Skip to content

Security overview

Last updated August 2026

Access control

Each franchise office is a separate workspace enforced at the database level, not in application code. Role-based rules limit caregivers to their own record, their assigned visits and the clients on those visits. Schedulers and owners are scoped to their office; corporate administrators see aggregate performance only.

Audit controls

Views and changes to health information are logged with the acting user, record, action and timestamp. The log accepts new entries only — updates and deletions are revoked for every application role. Owners can filter the trail and export it as a CSV for compliance reviews.

Person and entity authentication

Individual accounts with email or Google sign-in, leaked-password protection and a minimum password strength. Shared logins are prohibited by the acknowledgement every user accepts at first sign-in.

Automatic logoff

Sessions warn at 14 minutes of inactivity and end at 15 minutes, so an unattended workstation does not leave health information on screen.

Transmission and storage

All traffic is served over TLS and data is encrypted at rest. Health information is never placed in page addresses, page titles, error messages or browser logs.

Integrity and retention

Clients and visits are soft-deleted, keeping the historical record intact for the retention window each office configures. Backups are managed by the hosting platform.

Reporting a concern

Report a suspected security or privacy issue to your franchise owner immediately; owners escalate to corporate within 24 hours as required by the breach notification process.