SOC2C

Is this your company? Buyers are checking Healthyr here. Claim healthyr.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Healthyr logo

Healthyr

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Healthyr is SOC 2 Type II compliant. Healthyr also holds HIPAA, PCI DSS, and HITRUST.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Healthyr offers a host of digital health & wellness tools that make at-home health care easy, affordable, & accessible.

Compliance & infrastructure

Hosting
AWS
Data handled
Customer personally identifiable informationEmployee personally identifiable informationPersonal health information

Subprocessors

6
  • A
    Amazon Web Services · Cloud provider
  • G
    Google Workspace · Identity provider
  • J
    Jamf · IT
  • 1
    1Password · Password management
  • V
    Vanta · Security
  • G
    GitHub · Version control

Compliance leadership

The person who leads Healthyr's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Healthyr's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Documents
    List the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Healthyr SOC 2 compliant?
Healthyr is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Healthyr HIPAA compliant?
According to Healthyr's public trust center, Healthyr is HIPAA compliant. On SOC2C this listing is Listed.
Is Healthyr PCI DSS compliant?
According to Healthyr's public trust center, Healthyr is PCI DSS compliant. On SOC2C this listing is Listed.
Is Healthyr HITRUST certified?
According to Healthyr's public trust center, Healthyr is HITRUST certified. On SOC2C this listing is Listed.
Is Healthyr SOC 2 Type I or Type II?
Healthyr is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.

Answers published by Healthyr

Reproduced from Healthyr's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

How is our digital health platform designed to ensure HIPAA compliance?
Our platform employs robust encryption measures to safeguard patient data and ensure compliance with the Health Insurance Portability and Accountability Act (HIPAA). We implement industry-standard security protocols to protect electronic health records (EHRs) and maintain the confidentiality of sensitive information.
What security measures are in place to protect patient data during transmission and storage?
We utilize secure communication channels and encryption protocols to safeguard the transmission of health records. Additionally, data at rest is encrypted, ensuring that patient information remains secure throughout its lifecycle within our system.
Can you elaborate on the access controls in place to restrict unauthorized access to health records?
Our platform implements strict access controls, including role-based access and multi-factor authentication, to limit system access to authorized personnel only. This ensures that healthcare providers and staff can access only the information necessary for their roles.
How do we ensure the integrity and authenticity of health records within the platform?
We employ advanced data integrity measures, such as digital signatures and audit trails, to guarantee the authenticity of health records. This helps in tracking any changes made to the data and ensuring its accuracy over time.
What steps are taken to monitor and detect potential security incidents or breaches?
Our platform incorporates continuous monitoring and automated threat detection systems to promptly identify and respond to any potential security incidents. This proactive approach allows us to mitigate risks and maintain the integrity of the health records.