TheraPrac is designed with security, privacy, and compliance as foundational principles. Our platform supports healthcare providers and other regulated customers by protecting sensitive data and aligning with recognized healthcare and security requirements.
This page provides an overview of TheraPrac's approach to security and compliance. Detailed documentation is available upon request.
TheraPrac is built for healthcare use cases and supports compliance with the Health Insurance Portability and Accountability Act (HIPAA).
TheraPrac operates as a business associate to healthcare customers that qualify as covered entities under HIPAA. We implement administrative, physical, and technical safeguards designed to protect protected health information (PHI) throughout its lifecycle.
As part of our standard onboarding process, TheraPrac executes a Business Associate Agreement (BAA) with covered entity customers.
Our HIPAA-aligned practices include:
TheraPrac protects sensitive healthcare data using a layered security approach designed to support confidentiality, integrity, and availability.
Core security practices include:
Security controls are reviewed periodically and evolve as the platform and threat landscape change.
In addition to HIPAA, TheraPrac aligns its security governance and control environment with widely recognized industry frameworks.
TheraPrac's controls and operational practices are designed to align with the SOC 2 Trust Services Criteria, with a focus on Security, Availability, and Confidentiality.
A SOC 2 report has not yet been issued.
TheraPrac maintains an Information Security Management System (ISMS) designed to align with the principles and control objectives of ISO/IEC 27001.
TheraPrac is not currently ISO/IEC 27001 certified.
Security and compliance are a shared responsibility.
Detailed security and compliance documentation, including our Security, Privacy & Compliance White Paper, is available upon request.
For security inquiries, compliance questions, or documentation requests, please contact: