Security & Trust Center
Security Architecture & Readiness
Review HeyDr's current safeguards, target architecture, and HIPAA readiness roadmap. This page distinguishes active controls from work still in progress.
Security Controls & Readiness
HeyDr is in beta readiness. We do not currently claim HIPAA compliance or SOC 2 certification. The statuses below separate active technical controls from provider-level assurances and planned work.
Encryption in Transit and at Rest Active
Provider-Specific Voice Retention Controls In Progress
Private Database Networking & Isolated Environments Active
Cloud Provider SOC 2 Assurance ReportsProvider Level
Third-Party BAA Execution In Progress
Independent HIPAA AuditPlanned Before Clinical Launch
Powered By Enterprise Infrastructure
Google Cloud Run
Cloud SQL
ElevenLabs
Twilio
Google / Microsoft / Apple
Review Our Architecture.
Download our complete Target Security Architecture & HIPAA Readiness Plan to see exactly how we route, encrypt, and protect patient data.