
[ES] Your Health Data Is Yours.[ES] We Built It That Way From Day One.
[ES] Privacy isn't a policy here — it's the product. Here's exactly how we protect your data.
[ES] Six Things We Promise.
[ES] No Exceptions.

[ES] You Own Your Data
[ES] Export or permanently delete your health data at any time from within the app. No retention after deletion. No lock-in.

[ES] Never Sold
[ES] Your health, genetic, and behavioral data is never sold to third parties, insurers, pharma companies, or advertisers.

[ES] Encrypted End-to-End
[ES] All PHI encrypted at rest (AES-256) and in transit (TLS 1.3). Access requires multi-factor authentication.

[ES] HIPAA Compliant
[ES] We operate as a covered entity. BAAs with all vendors who touch PHI. Annual risk assessments. Staff-certified annually.

[ES] Genetic Governance
[ES] Your genetic data is never used for research or shared with any third party without explicit written opt-in consent.

[ES] Role-Based Access
[ES] Only your assigned care team sees your clinical data. Full access logging — every touch is auditable.
[ES] Healthcare-Grade
[ES] Privacy
[ES] Geviti operates as a HIPAA-covered entity. Every vendor who handles PHI signs a BAA. We run annual risk assessments.
[ES] Annual HIPAA Risk Assessment (NIST)
[ES] BAAs with all PHI-adjacent vendors
[ES] Staff HIPAA training + annual certification
[ES] Breach notification — 60-day procedure
[ES] Hosted on HIPAA-eligible AWS infrastructure
[ES] Genetic Data Gets
[ES] Extra Protection
[ES] Your genomics results are stored separately, access-controlled beyond standard PHI, and never used for research without explicit written consent.

[ES] Stored on separate, restricted infrastructure

[ES] No research use without explicit opt-in

[ES] No third-party genomics sharing

[ES] Permanent deletion available on request
[ES] What's Under the Hood

[ES] AWS Infrastructure
[ES] HIPAA-eligible. US-only data residency.

[ES] Redundancy
[ES] Automated backups. 99.9% uptime SLA.

[ES] Audit Logging
[ES] Full trail — who saw what, when.

[ES] Annual Pen Testing
[ES] Third-party security assessment yearly.