Immutable record
Entries are append-only. Nothing is overwritten, so the history of every dollar stays intact and auditable.
ChicLedger's architecture reflects the experience of founders who have worked on the legal and regulatory front lines of healthcare and fintech.
Entries are append-only. Nothing is overwritten, so the history of every dollar stays intact and auditable.
Employers, TPAs and providers each see their own slice of the shared record, and nothing more.
We collect only the financial data the ledger needs, and we keep health information out of it entirely.
| Framework | Why it matters | How ChicLedger approaches it |
|---|---|---|
| SOC 2 Type II | Enterprise procurement | Access controls and audit logging designed to the standard from day one; examination in preparation. |
| HIPAA | Health data protection | Addressed structurally: no patient-identifiable data enters the ledger, at any stage. |
| PCI DSS | Payment instruction flows | ChicLedger stores no card data. |
| ISO 27001 / NIST CSF | Institutional trust | Security program aligned to both frameworks. |
| FTC Safeguards Rule | Customer financial information | Information security program designed around its requirements. |
We're happy to walk your security, compliance and legal teams through our architecture and controls. If you believe you've found a security vulnerability, please tell us and we'll respond promptly.