Trust and security

Your data lives where
you can defend it.

Supercell is intentionally lean on integrations. It is a focused clinical tool, not an EMR. Where it connects, it connects deep, with encryption at every layer.

What that means in practice

Vault-at-rest encryption

Patient data is encrypted at rest and in transit, every layer.

Per-clinic key management

Each clinic runs on isolated, encrypted credentials.

Signed audit log

Every clinical action lands in a signed, exportable chain that verifies on a schedule.

HIPAA mode

Available as an Enterprise-tier deployment toggle.

No training on your data

Patient data never trains a model. Panel uploads are PHI-redacted before processing.

Revocable sessions

60-day JWT sessions you can revoke at any moment.

The audit posture

When the regulator asks,
the answer is on file.

Every clinical action lands in a signed audit chain: who asked, what the evidence said, what was signed and when. Entries are cryptographically linked, so a gap or an edit shows.

Question askeda3f2…9c
Evidence returnedb81d…44
Physician signsc4a9…e1
Chain verifiedd77b…0f

Signed, not just logged

An export is evidence, not a spreadsheet. The chain verifies on a schedule.

Physician in the loop

No artefact reaches a patient without a signature, recorded next to its evidence.

Data stays put

Per-clinic keys, S3-compatible storage, retention per regional frameworks.

Open to licensed physicians

Security questions? Bring your compliance lead.

A 30-minute walkthrough on your own kind of case: intake, draft, dosage, signed dossier, end to end. No slideware.

Security · PRCN Supercell