Security

Handling payroll and health data like it matters.

Security isn't a page we bolted on — it's why several of the architectural defaults exist. Here's the posture.

🔒

PHI minimization

Only the fields a sync needs are ever moved or stored.

Tenant isolation

Per-employer credentials, mappings, and data, fully separated.

Full audit trails

Every change and operator action is logged and reviewable.

👤

Role-based access

Client, service-desk, and system-owner roles scope what's visible.

🔑

Encrypted in transit & at rest

Standard encryption on every credential and record.

Retention & redaction

Operator redaction on support threads; data kept only as needed.

Recurring security review

Security review is part of every release, not an annual event — including AI-assisted analysis of authentication, access-control, and data-handling paths.

🛡

Built for HIPAA-aligned handling.

Want the security detail for your compliance review? We'll walk your team through it. security@tandemlink.net