Security
HIPAA-eligible architecture (BAA on roadmap)
We keep the language honest: tenant isolation, encrypted transcripts, signed evidence packs, and the documented deployment path required for healthcare pilots. A BAA path is on the roadmap — we don't assert a certification we don't yet hold.
Security
Evidence on every call
Calls produce transcripts, tool-call history, and signed evidence artifacts so operators and auditors can review what actually happened without reconstructing the session from logs.
Security
Human gates for risky actions
Payments, demographic updates, sensitive writes, and other real-world side effects remain behind approval or escalation controls instead of disappearing into a black-box prompt.