Security Update: Military-Grade Encryption Now Live
How a Reddit conversation led us to implement end-to-end encryption for complete data privacy.
Security Update
We just did something significant at soapnotes.doctor.
And here's the backstory…
The Reddit Discovery
I was scrolling through medical Reddit and visited r/psychotherapy to get the latest medical gist.
I was a little bit bothered after spending some time there.
Here's the reason.
They had concerns about medical scribes.
But one good concern I loved so much was a therapist complaining about how patients' data can be sold and how Google did something of that sort years back.
Fair enough.
The Decision
I looked at myself and thought I could do two things to solve that.
I could either try to make people trust that I would never do such a thing, or I could create a situation that would never allow me to do such a thing. I did the latter.
I decided to encrypt a practitioner's every interaction on our platform.
This makes it so neither I nor our data provider can ever see what you and your patients discuss.
Note that before this, our data provider is also encrypted at rest, HIPAA-compliant and SOC 2 certified.
So we're technically secured; however, we just upped the game a tiny bit.
What This Means for You
In layman's terms, all this means your data is gibberish at the application layer, gibberish at rest, and gibberish to everyone else other than you.
Security and privacy at its finest.
This one is for the psychotherapist I saw concerned about this and every lovely medical professional out there who's taken patient care to their heart of hearts.
If you're yet to join the journey, you'll be so pleased to!
How to get started with soapnotes.doctor