Not an HMSThe revenue layer above the one you already run — orchestration for hospitals, health aggregation for employers.See the difference →

Home · Trust

Compliance posture

What the product supports

  • DPDP Act: consent records, purpose limitation, retention limits, deletion on request, and breach notification.
  • IT Rules 2021: a named grievance officer and a published redressal route.
  • ABDM: ABHA linkage, consent artefacts, and FHIR R4 bundles built and validated.
  • NABH: evidence assembled from records the system already holds.

What we do not claim

  • We are not certified against ISO 27001 or SOC 2.
  • We do not claim to transmit to the NHCX gateway.
  • We are not IRDAI registered and we are not an insurance intermediary.
  • We do not rank insurers or publish an opinion about one.
Why the second list exists

A compliance page that only lists what a vendor supports is not a compliance page. The second list is the one worth reading.

NADI · DOCUMENT
● Status current
● Plain language yes
● Contact stated
✓ published, dated, binding

Read the rest of it.

Every one of these pages says what we do, what we do not, and who to write to when it matters.