SECURITY

Your Patient Data never touches our servers.

DDSVPN is a tunnel, not a warehouse. We don't store, process, or have access to any Patient Data. Ever.

HIPAA Aligned WireGuard 256-Bit Encryption

How Data Flows

DDSVPN creates a direct encrypted tunnel between your staff member's computer and your Office firewall. Traffic flows directly between the two. Our servers handle authentication and tunnel provisioning — they never see the actual data flowing through the tunnel.

Think of DDSVPN as a secure pipe. We build the pipe and make sure it's encrypted. What flows through it — your Patient Charts, your X-Rays, your Billing data — goes directly from your staff to your Office. We don't have a copy. We can't see it. We don't want it.

Encryption

Every tunnel uses WireGuard's ChaCha20-Poly1305 encryption with Curve25519 key exchange. This is the same encryption standard used by Cloudflare, Tailscale, and the Linux kernel. Private keys are generated on the staff member's device and never leave it.

HIPAA Alignment

No PHI Stored

We don't store Protected Health Information on DDSVPN servers. We handle credentials and connection logs, not Patient Data.

Audit Logging

Every login, config download, and access event is logged with timestamp and IP address. Full audit trail for compliance.

BAA Available

Business Associate Agreements are available for all paying customers at no additional cost. Request one anytime.

Infrastructure

API Hosting Fly.io (US East, SOC 2 compliant)
Database Supabase (PostgreSQL, encrypted at rest)
CDN & Pages Cloudflare (global edge network)
Patient Data Never touches any of these systems

Questions about our security practices?

Email our compliance team. We're happy to walk through our architecture and answer technical questions.

Contact Compliance