Security & HIPAA
Your health records deserve the highest level of protection. Here's how we keep your information safe.
Our Security Commitment
At YESONUS, security isn't an afterthought — it's built into everything we do. We understand that your health records contain some of your most sensitive information, and we treat that responsibility seriously.
Current Website Security
Our marketing website implements these security measures:
Encryption in Transit
- All connections use TLS 1.3, the latest encryption standard
- Your browser's address bar shows a lock icon, indicating a secure connection
- Data traveling between your device and our servers is encrypted
Privacy-First Analytics
- We use Plausible Analytics, a privacy-focused alternative to traditional analytics
- No cookies are placed on your device
- No personal information is collected or tracked
- Your browsing behavior is not tracked across websites
Secure Email Handling
- Early access email addresses are stored with encryption at rest
- Access is strictly limited to essential personnel
- We never sell or share your email address
What is HIPAA?
HIPAA (Health Insurance Portability and Accountability Act) is a U.S. law that protects your health information. In plain language, HIPAA requires that:
- Your health records stay private — only people who need access can see them
- You control your information — you can request copies and corrections
- Your data is protected — organizations must use security safeguards
- Breaches are reported — if your information is exposed, you must be notified
HIPAA and YESONUS
Marketing Website (Current)
Our current marketing website does not collect Protected Health Information (PHI). The only data we collect is your email address if you sign up for early access. This website is informational only.
YESONUS Vault (Coming Soon)
When we launch the YESONUS Vault, it will be designed with HIPAA compliance as a core requirement. The vault will include:
Technical Safeguards
- End-to-end encryption for all health records
- Multi-factor authentication (MFA)
- Automatic session timeouts
- Encrypted backups
Access Controls
- You decide who can see your records
- Granular sharing permissions (share specific documents, not everything)
- Instant revocation of access
- Complete audit trail of who accessed what and when
Administrative Safeguards
- Regular security training for all team members
- Background checks for personnel with data access
- Incident response procedures
- Business associate agreements with all vendors
Plain Language: What This Means for You
Right now, on this website:
- Your email address (if you sign up) is safely stored
- We don't track you with cookies
- We don't sell your data to anyone
When the vault launches:
- Your health records will be encrypted so only you can read them
- You'll choose exactly who gets to see your records
- You can take back access anytime
- You'll know who looked at your records and when
Questions About Security?
We believe in transparency. If you have questions about how we protect your information, please reach out:
Email: security@yesonus.com Subject: Security Inquiry
Your health records. Your control.