Security Overview
Defense-in-depth: encrypted transport, row-level data isolation, role-based access, continuous platform scanning.
This page is maintained by DENTIV.ai to answer common security and privacy questions about the platform. Status reflects current beta-stage controls and is not a substitute for legal or compliance review.
Defense-in-depth: encrypted transport, row-level data isolation, role-based access, continuous platform scanning.
DENTIV.ai is in closed beta and operates on demo-safe data. Formal HIPAA validation, BAAs, and PHI handling controls will be completed before production use.
TLS 1.2+ for all transport. Data at rest encrypted by the managed database provider.
Tenant isolation enforced at the database layer. Practice data is never accessible across tenants.
Administrative actions and authentication events are recorded for review.
Managed automated backups with point-in-time recovery on the platform tier.
Backup restoration procedures are documented. Formal DR drills will be scheduled before GA.
Target 99.9% availability. Recent trailing 30-day measured uptime: 99.98%.
HIPAA validation, SOC 2 Type I, then SOC 2 Type II planned ahead of broad GA.
Only data necessary to operate the product is collected. No data is sold. Subprocessor list maintained by platform team.
Managed edge runtime and managed Postgres. No customer-managed servers required.
Material incidents are posted to the Trust Center. None active.
Access control, change management, and vulnerability response policies are maintained internally and available under NDA.
HIPAA validation, SOC 2, and ISO 27001 readiness are on the roadmap.