Security and data protection
AndWithYou holds some of the most sensitive information a family will ever share. This page describes the controls that are live in the product today, in plain language, so an HR, legal or IT reviewer can assess us quickly.
Access is scoped, never all-or-nothing
Every person and every partner connected to a case gets a role. A provider sees only the outcome they are working on and the records explicitly shared with them. Access rules are enforced in the database, not only in the interface.
Encryption in transit and at rest
All traffic runs over TLS. Case data is stored encrypted at rest by our hosting platform. Sensitive identifiers are only ever shown to people the family has authorized.
Consent is recorded, scoped and revocable
When a family authorizes a provider, an employer or an agency, we record who was authorized, for what purpose, which parts of the plan, and when it expires. The family can withdraw that authorization at any time, and the record of the grant and the withdrawal both remain.
An append-only activity trail
Reads and writes on case data are written to an activity log with the actor, the action, the resource and the time. Entries cannot be edited or deleted by anyone, including our own admins.
Partner connections use scoped keys
HR teams and records partners connect with named keys that carry explicit scopes, optional network restrictions, an expiry date and one-click revocation. We store only a fingerprint of each key, never the key itself.
Export and deletion on request
Signed-in people can request a copy of their data or ask for a case to be deleted from their privacy controls. Each request is tracked to completion.
More detail
The rest of our commitments, in writing.