Security & Compliance

Enterprise Security Built for Healthcare & Social Care Data

Relay is built for the sensitivity of the data it handles — HIPAA-ready infrastructure, role-based access, tenant isolation across every organization in a network, and audit logging on every consequential action.

Data protection

PHI and sensitive member data are handled under HIPAA-ready infrastructure controls, with encryption and access controls designed around least-privilege principles.

Role-based access & tenant isolation

Every organization in a network — health plan, provider, CBO, or government agency — sees only the data its role and tenant permissions allow, even within a shared, multi-organization platform.

Audit logging & accountability

Consequential actions are logged so organizations can explain what happened, when, and by whom — a requirement for both compliance and multi-partner trust.

Responsible AI governance

AI recommendations across Relay are advisory: care teams and administrators review and approve consequential actions, with human accountability preserved by design.

Key Capabilities

  • HIPAA-ready infrastructure
  • SOC 2-aligned practices
  • Role-based access control
  • Multi-organization tenant isolation
  • Audit logging
  • Human-reviewed AI recommendations

Have a security or compliance question?

Talk to our team about your organization's specific security, privacy, or compliance requirements.

Request a Demo