Full-text legal policies, HIPAA compliance notices, Business Associate Agreements (BAA), Data Processing Addenda (DPA), and security disclosure guidelines for Claude and enterprise review.
Shteg.ai maintains a zero-trust, GCP-native infrastructure designed to protect Protected Health Information (PHI) and financial transaction data.
Controls mapped criterion-by-criterion to the Trust Services Criteria — including CC6.1, CC6.8, CC7.1, CC7.2 and CC8.1 — in our own evidence register, each with its implementation status and evidence path. The Type II audit has not been engaged; the live status of every criterion is published at /security.
AES-256 encryption at rest and TLS 1.3 in transit with GCP KMS cryptographic keys.
Executing Business Associate Agreements (BAA) with all healthcare practice tenants.
Architected for multi-tenant, multi-specialty healthcare organizations, RCM partners, and digital health developers.
Unified cross-specialty clinical charting, shared scheduling pools, and consolidated enterprise billing.
Streamlined 1-click check-in, automated patient intake, and instant copay collections.
High-availability Cloud Healthcare FHIR store integration, regional BAA coverage, and SOC 2 audits.
OR CCTV surgical Vision AI scribe feed, intra-op step tracking, and Barrett Universal II IOL calculator.
Multi-client 837P claim scrubbing, 835 ERA auto-posting, Found-Money denial reversal, and 1.8s FedNow payouts.
Open API access, SMART on FHIR backend services, and SCLIT content-addressed trajectory verification.