Trust Center

Security & Compliance

How we approach security at SwimLanes, and where our practices stand today.

NIST Cybersecurity Framework

Our security program is designed around the NIST Cybersecurity Framework's core functions (Identify, Protect, Detect, Respond, Recover). We are not formally certified against NIST CSF, as it is a voluntary framework rather than a certifiable standard.

HIPAA

As a platform used by healthcare organizations, our practices are informed by the HIPAA Privacy and Security Rules. A Business Associate Agreement is available on request.

Need a signed Business Associate Agreement, or want us to review your own information security addendum? Contact us and we'll follow up.