For medical, dental, and therapy practices
Patient information, without the email trail
Our Healthcare plan is coming soon: end-to-end encrypted messages, files, and forms for patient information, under a Business Associate Agreement, with HIPAA safeguards switched on for your whole practice. Tell us you’re interested, and we’ll be in touch.
Clients never need an account. Firm features are on the Business plan.
Email wasn’t built for patient information
Records requests, referrals, insurance cards, and billing details end up in inboxes, attachments, and forwarded threads, where they stay for years. Every copy is one more place a breach can find them.
Send
Records and results, delivered to the right person
Send a document or message as a one-time link locked to the patient’s or provider’s email address. They confirm a code, it opens once, and then it’s erased.
Squawk Drop
One secure place for patients to send documents
Give patients a page to send insurance cards, IDs, and forms, up to 2 GB at a time, instead of emailing photos.
Intake
Forms that come back complete
Collect intake information with forms that check formats and capture typed signatures, encrypted in the patient’s browser.
Squawk Back
Know who’s on the phone
Before sharing anything by phone, confirm the caller is the patient, or prove to them that you’re really their practice.
Healthcare plan
HIPAA safeguards, switched on
Coming soon: we’ll sign a Business Associate Agreement. Two-step verification, a 15-minute idle sign-out, recipient-locked links, and six-year access records are enforced for everyone.
Oversight
Evidence for your HIPAA program
Monthly evidence packs map your activity to the HIPAA Security Rule’s technical safeguards, with an audit trail of every access.
Supporting your HIPAA program
HIPAA requires a Business Associate Agreement with any vendor that handles protected health information for you. On the Healthcare plan (coming soon), Squawk Secret signs one, and its safeguards support the Security Rule’s access control, audit, authentication, and transmission security requirements. Until you’re on it with a signed agreement, don’t send patient information through Squawk Secret.
Squawk Secret is not an electronic health record or a patient portal: keep the official record in your own systems. HIPAA compliance also depends on your risk analysis, policies, and training. This page isn’t legal advice.
Records and retention
Squawk Secret erases what you send and receive on a schedule you set, which keeps sensitive information from piling up where it doesn’t belong. Anything that belongs in the patient’s record should be saved to your EHR or practice management system before its link expires. Squawk Drop items can be kept for up to a year, and the audit trail of who opened what, and when, is kept for your records.
Everything in one place
One Business account covers your whole team: providers, front desk, and billing staff, each with their own sign-in.
- End-to-end encryption: we can’t read the contents
- A Business Associate Agreement (coming soon)
- Two-step verification and a 15-minute idle sign-out for everyone
- Recipient-locked links that last at most 7 days
- Access records kept six years
- Squawk Drop page for patient documents
- Evidence packs for the HIPAA Security Rule
Tell us you’re interested
Our Healthcare plan isn’t available yet. Tell us about your practice, and we’ll be in touch personally when it is.