Security & privacy

Your data is yours alone.

The most personal information you have deserves the strongest protection. Here's how we keep your biology private and secure.

Encrypted end to end

Your data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Results are never sold or shared for advertising.

Hardened infrastructure

Hosted on SOC 2-aligned cloud infrastructure with continuous monitoring, isolated environments, and least-privilege access.

HIPAA-conscious design

We treat lab results as protected health information and handle them with HIPAA-aligned safeguards across the stack.

You control access

Only you can see your results by default. Share with a provider when you choose, and revoke access at any time.

Trusted partners

Testing runs through accredited labs via Junction. Vendors are reviewed for security before they ever touch your data.

Delete anytime

Export or permanently delete your data whenever you want. Your health record belongs to you, not to us.

Have a security question or want to report a vulnerability? Email support@curalislabs.com.