Trust
Security at Rithma
Home care data is sensitive. We design the product so agencies, caregivers, and families can work without putting PHI at unnecessary risk.
Practices
What we build for
- Encryption in transit (TLS) and encryption at rest for application data stores.
- Role-based access, session controls, and audit logging in the product.
- HIPAA-aligned handling for covered care workflows — see our Privacy Policy for details.
- Vendor and infrastructure controls documented for SOC 2 readiness work.
Report a concern
Responsible disclosure
If you believe you found a vulnerability in Rithma, email [email protected] (or [email protected]). Please include steps to reproduce and avoid accessing PHI beyond what is needed to demonstrate the issue.