Skip to content

How it is built.

What is stored and where

Practice records, claims and remittances are stored on Azure Canada.

How practices are separated

Row-level security is enforced by the database itself on the tenant tables, so one practice cannot read another's rows even through the application.

How health information is encrypted

Health information uses column encryption, with blind indexes for search.

Who sees what

Roles decide what a person can open. A physician can delegate to an MOA. A physician approves a claim before it is submitted. People join by invitation.

The ministry key

The ministry key is a platform secret. It is never kept per practice, and it is never displayed.

After a restore

After a restore, external writes are frozen until a person reconciles them.

Sign-in

Sign-in is MFA with password confirmation. Backup codes are shown once.

Audit

An audit trail covers submissions, downloads and changes.

Ask us for the full protection model document.