There is nothing to breach.
Connect Shield stores zero PHI. Your analysis is built from data CMS already publishes about your agency — encrypted, isolated per clinic, and role-gated.
Data we never take can never leak.
Most healthcare software carries patient data and defends it. We designed the product so there is no patient data to defend.
Built on published data
SSVI, PEPPER, CAHPS, and PS&R are aggregate, facility-level reports. CMS publishes them about your agency — not about any patient.
Encrypted in transit
Every connection to the portal runs over TLS 1.2+. No plaintext traffic, anywhere.
Encrypted at rest
Database and file storage are encrypted at rest on managed infrastructure.
Per-clinic isolation
Row-level security scopes every query to your clinic. Your portal can only return your rows.
Role-gated portal
Accounts are provisioned by invitation, credentials are hashed, and access is gated by role.
No patient records, ever
Not minimized. Not de-identified. Absent. There is no patient table in this product.
What we deliberately do NOT collect.
The reports the platform reads — SSVI, PEPPER, CAHPS, PS&R — are facility-level by definition. So the product simply has no place to put any of this:
- Patient charts or medical records
- Clinical notes or visit documentation
- Patient names, dates of birth, MRNs, or any identifiable patient data
- Diagnoses, medications, or treatment details
- Family or caregiver contact information
Planning to send us PHI? Don't.
Connect Shield is built to work without patient data, and our terms require that none is uploaded. If a workflow you want seems to need it, talk to us first — there is almost always a facility-level way to get the same answer.
admin@connect-shield.comSee the portal — and what it doesn't ask for.
20 minutes. Your published SSVI score, your isolation model, and not a single patient field on screen.
Book a demoSecurity questions before you book? admin@connect-shield.com