Security you cantrust

We understand just how important cyber security is in healthcare. That’s why we’ve done things differently.
Illustration eines Mannes mit verschränkten Armen und einer Frau neben ihm
Cyber security can be complex. We keep it simple: we don't
store PHI. That means no loopholes, vulnerabilities, or risks that could expose patient data—because there’s nothing to be exposed.
/ 01
We know industry standards
HIPAA is constantly changing. That’s why we stay up-to-date on HIPAA and its security and privacy requirements for you. In fact, as part of our community, we help you understand and navigate these changes.
Illustration einer Krankenschwester und eines Arztes unter den Logos von DSGVO, HIPAA und AICPA SOC 2
/ 02
Patient visits are incognito
Patients don’t create accounts, logins, or any other trackable information. The only way patients can be identified is through the call by you, their provider. Since the call doesn’t store PHI, patients remain anonymous.
llustration einer Person in einem Videoanruf, die ein Schild mit einem Fragezeichen hält, mit dem Text "Kein Konto, kein Login und keine Software erforderlich.“
/ 03
A BAA is arranged for you
Having a business associate agreement (BAA) with your telehealth platform is a HIPAA requirement. Because we keep track of the details in telehealth security, we provide a BAA, ready for you to sign.
Illustration einer Hand, die ein Dokument mit der Aufschrift "BAA“ unterschreibt
/ 04
Cyber security is routine for us
Keeping our systems and software secure is a continuous process. That’s why we have processes in place that prevent intruders. And since we’re immediately alerted when there are issues, we can act quickly.
Illustration von zwei Personen, die auf Warnsymbole zu Internet- und Cloud-Verbindungen schauen
Illustration einer Krankenschwester und eines Arztes unter den Logos von DSGVO, HIPAA und AICPA SOC 2
What to expect from our security
Symbol einer Person in einem Rahmen mit Ausrufezeichen, das auf eine Warnung oder Aufmerksamkeit zur Benutzeridentifikation hinweist
24/7 monitoring
With 24/7 monitoring, we can respond immediately to any security breach or suspicious activity.
Symbol von zwei Sprechblasen mit Sternchen, die versteckte oder verschlüsselte Nachrichten darstellen
True end-to-end encryption
All chat messages and video calls sent through doxy.me remain private.
Symbol eines Vorhängeschlosses und Schlüssels
Single sign-on
For added security, you can enable single sign-on to protect access to your account.
Symbol eines Schildes mit Häkchen in einem Kreis, das Schutz oder überprüfte Sicherheit darstellt
Dedicated security team
We have an information security team that is focused on staying ahead of cybersecurity threats.
Symbol eines Vorhängeschlosses mit der Umrissform von Kalifornien
Vulnerability scans
We proactively look for vulnerabilities, which reduces the risk of attacks.
Leading security standards—worldwide
HIPAA
HIPAA
We meet US standards for protecting patient health information.
AICPA SOC (System and Organization Controls)
SOC 2 (Type 2)
This industry standard report was issued by an independent auditor.
AICPA SOC (System and Organization Controls)
SOC 3
See this third-party security assessment.
CPRA
We meet the requirements of the California Privacy Rights Act.
GDPR
GDPR
We meet the EU’s standards for protecting European citizens’ data.