Security and data handling

Designed for a controlled, evidence-governed pilot.

Healthdex currently operates with public, licensed, synthetic, and approved aggregate provider-level evidence. The pilot does not accept patient-identifiable claims or clinical records.

Source-faithfulInspectable relationshipsVisible assumptionsReproducible decisions
01

Data boundary

No PHI, Limited Data Sets, patient-identifiable claims, clinical records, stable patient-derived identifiers, or unrestricted free-text uploads.

02

Access controls

Administrator-provisioned accounts, tenant membership, role checks, forced password change, session expiration and revocation, and recorded security events.

03

Application controls

CSRF protection on state-changing forms, fail-closed authentication, parameterized database access, restrictive session cookies, and security response headers.

04

Operational controls

Least-privilege MySQL and ClickHouse identities, migration tracking, audit retention, release verification, backup checks, and scheduled health monitoring.

05

Current scope

MFA, SSO, SCIM, verified email, outbound email, and self-service password recovery are roadmap capabilities, not current pilot claims.

Make it concrete

Apply the evidence model to a market decision you own.

Book a network analysis →