Security

Trust is table stakes

Jed is built for clinical buyers who expect HIPAA, GDPR, SOC, and crisis-ready controls.

HIPAA + GDPR

BAA-ready with logging, least privilege, and full DSR workflows.

Data residency

US (East/West) + EU (Frankfurt) with customer-controlled regions.

Encryption

AES-256 at rest, TLS 1.3 in transit, envelope keys rotated automatically.

Compliance badges

SOC 2 Type II underway, HITRUST and ISO 27001 on roadmap.

Crisis escalation

Human support + community partners

Jed treats safety the way crisis lines do: live humans, data, and compassionate scripts.

  • Automated detection for 200+ crisis phrases and biomarker spikes
  • Tiered escalation to licensed humans within 2 minutes
  • Live transfer to 988, local EMS, or employer EAP partners

Escalation partners

988 Lifeline, Crisis Text Line, vetted local clinicians, employer EAPs.

Enterprise readiness

Everything procurement needs

Security questionnaire packet covers architecture diagrams, pen tests, and policy docs.

SSO + SCIM
Role-based access
Audit-ready exports

Next best action

Request the security package

We share SOC 2 bridge letters, HIPAA attestations, and data maps under NDA.