Skip to main content
Security

Security and HIPAA overview

Last updated

Blink Session is built for confidential, HIPAA-conscious care:

  • All traffic is encrypted in transit, and sessions run in your browser with no software to install. Thus, Blink Session does not store any data on your device, besides login Cookies while you are logged in, unless you explicitly download it.
  • Two-factor authentication or passkey is required for Staff or Admin users, and is available for contact Portal Logins.
  • All sessions are auto-locked after 10 minutes of inactivity.
  • Access to client information is limited to linked staff and administrators, and sensitive access is logged.
  • We sign Business Associate Agreements (BAAs) with organizations that require one — go here to sign your BAA.

Did that not cover it?

Search the rest of the help center, or send the question to support and a human who uses the platform daily will answer it.