Skip to main content
AndWithYou
Trust

Security and data protection

AndWithYou holds some of the most sensitive information a family will ever share. This page describes the controls that are live in the product today, in plain language, so an HR, legal or IT reviewer can assess us quickly.

Access is scoped, never all-or-nothing

Every person and every partner connected to a case gets a role. A provider sees only the outcome they are working on and the records explicitly shared with them. Access rules are enforced in the database, not only in the interface.

Encryption in transit and at rest

All traffic runs over TLS. Case data is stored encrypted at rest by our hosting platform. Sensitive identifiers are only ever shown to people the family has authorized.

Consent is recorded, scoped and revocable

When a family authorizes a provider, an employer or an agency, we record who was authorized, for what purpose, which parts of the plan, and when it expires. The family can withdraw that authorization at any time, and the record of the grant and the withdrawal both remain.

An append-only activity trail

Reads and writes on case data are written to an activity log with the actor, the action, the resource and the time. Entries cannot be edited or deleted by anyone, including our own admins.

Partner connections use scoped keys

HR teams and records partners connect with named keys that carry explicit scopes, optional network restrictions, an expiry date and one-click revocation. We store only a fingerprint of each key, never the key itself.

Export and deletion on request

Signed-in people can request a copy of their data or ask for a case to be deleted from their privacy controls. Each request is tracked to completion.

For reviewers

Common questions from HR and IT teams

Answers to the items that usually appear in a vendor review. If your questionnaire needs something not covered here, write to us and we will answer it directly.

Single sign-on
SAML 2.0 single sign-on can be configured for organization accounts.
Role separation
Roles are stored separately from user profiles and checked server-side, so a client cannot elevate itself.
Least privilege
Partner keys and staff roles are scoped to the narrowest set of data that does the job.
Audit evidence
Activity trails are exportable for a defined period on request from an organization admin.
Data residency
Case data is stored in the United States.
Incident contact
security@andwithyou.com reaches the team responsible for security issues.

We do not claim certifications we have not completed. Where an independent audit is in progress rather than finished, we will say so directly rather than imply otherwise.

Related

More detail

The rest of our commitments, in writing.