Security
Security & privacy
Encrypted connections
All data transfers use HTTPS/TLS. Documents and structured data are encrypted at rest in secure cloud storage.
Role-based access
Internal systems limit who can access data. Logging and access tracking keep a record of share events whenever feasible.
Least data necessary
We only process what’s needed to deliver the service. You decide what to upload, keep, or share, and you can revoke access anytime.
AI & data use
AI models help extract information so you can search and share more easily. We do not sell your personal health data and we do not use your personal records to train public models.
- • Extract text from documents
- • Generate short summaries
- • Identify document types and key fields
Your controls
From your account you can manage access at any time. Formal details are published in our Privacy Policy and Terms of Use.
- • Delete uploaded documents (subject to backup retention windows)
- • Revoke existing share links or extend access
- • See which bundles you have created and shared
HIPAA & compliance
Carefolio Health Inc. is designing the platform to support HIPAA-aligned workflows where applicable. If we enter agreements with covered entities or business associates, we will address BAA requirements directly with those partners. Carefolio is not a replacement for institutional medical record systems; it is a patient-mediated record hub.