Security & compliance
Built HIPAA-sensitive by default
CoverNow handles call-off reasons, staff certifications, and resident-adjacent data. Compliance is a data-layer property here, not an afterthought.
Audit trail by design
Every offer, every response, and every supervisor action is written to an append-only audit log in the same transaction as the change it records. If the audit write fails, the whole action rolls back, there is no state-changing action that doesn't leave a record.
Tenant isolation
Every agency's data is scoped to that agency on every request. A request for another agency's record returns as if it doesn't exist, never a hint that it belongs to someone else.
Careful with sensitive reasons
A call-off flagged as protected leave is routed to HR, a supervisor sees "Reason withheld, routed to HR," never the verbatim reason, recording, or transcript. This is enforced at the data layer, not hidden only in the interface.
Role-based access
Supervisors, agency admins, HR managers, compliance officers, and executive directors each see only what their role needs. Executive-level access is aggregate reporting only, never individual-employee detail.
Where we are on formal certification
CoverNow is architected to a HIPAA-sensitive-by-default standard across encryption, access control, and audit logging. Formal HIPAA/PHI determinations and Business Associate Agreements are handled per customer with legal counsel, ask us about this directly as part of a demo.
Have a specific compliance question?
Bring it to a demo and we'll walk through it against your agency's requirements.
Book a demo