Security you can verify, not just trust.
ConnectHL7 handles some of the most sensitive data that exists. This Trust Center explains how we secure it, how our platform stays available, and exactly where we are on our compliance journey โ written for hospital IT, security reviewers, and procurement teams.
Our commitment
Encryption everywhere
Data is encrypted in transit (TLS 1.2+) and at rest (AES-256).
Least-privilege access
Access is restricted to what's necessary, protected by MFA.
Continuous monitoring
Our AWS environment is continuously logged, monitored, and assessed.
Built to recover
Automated, encrypted backups and a tested disaster recovery approach.
Transparent progress
Candid about what's in place today and what's next โ including SOC 2.
Explore the Trust Center
Everything a security review needs, organized by topic. Each document is written for public review; enterprise customers can request deeper detail under NDA.
Security Overview
Our security philosophy, shared responsibility model, governance, and risk management.
Read moreEncryption & Data Protection
How data is protected in transit and at rest, secrets management, and data integrity.
Read moreInfrastructure & Architecture
Our cloud-native AWS architecture, availability, monitoring, and secure development.
Read moreBusiness Continuity & Disaster Recovery
How we plan for continuity, backups, and recovery.
Read moreCompliance Roadmap
What we have in place today and what's coming next, including SOC 2.
Read moreResponsible Disclosure
How to report a security vulnerability to us.
Read moreSecurity FAQ
Answers to common enterprise security and due-diligence questions.
Read moreContact
How to reach our security, privacy, support, and sales teams.
Read moreRunning a security review?
We support enterprise security reviews and can provide additional documentation under NDA, including questionnaire responses and available audit artifacts.