Protecting your health data with enterprise-grade security. We take the privacy and security of your medication and health information seriously.
Partnered with Vanta
SOC 2 Type II certification demonstrates that AdherePod has established and follows strict information security policies. We are actively working through the Vanta compliance automation platform to achieve this certification.
Partnered with Vanta
HIPAA compliance ensures we meet the strict requirements for protecting electronic Protected Health Information (ePHI). As a healthcare platform handling medication data and voice conversations, HIPAA compliance is a top priority.
Our current security measures protect your data at every layer of the application.
All data encrypted with AES-256 via Neon PostgreSQL on AWS with KMS key management.
TLS 1.2/1.3 encryption on all connections. All API endpoints served over HTTPS.
Passwords hashed with bcrypt. Minimum 8 characters required. Never stored in plain text.
JWE (JSON Web Encryption) tokens via NextAuth v5 for tamper-proof session management.
Admin and user roles with server-side enforcement on all API routes.
Cryptographically random tokens (crypto.randomBytes), SHA-256 hashed, with 1-hour expiry.
Built-in Cross-Site Request Forgery protection via NextAuth framework.
Email delivery tracking with SendGrid webhooks. Voice conversation logging with full transcripts.
When a user account is deleted, all associated data (medications, conversations, emails) is automatically removed.
All API routes scoped to authenticated user. No cross-user data access possible.
We build on trusted, compliance-ready infrastructure from industry-leading providers.
SOC 2 Type II, ISO 27001, HIPAA-eligible
Application hosting and serverless functions
SOC 2 Type II, HIPAA-compliant, BAA available
Serverless PostgreSQL database
SOC 2 Type II
Email delivery and SMS services
Compliance automation
Continuous security monitoring and compliance management

Our ongoing efforts to strengthen security and achieve full compliance.
For security questions or to report a vulnerability, contact us at support@adherepod.com
Phone: 203-470-9996