Security

HIPAA-Capable Case Management Software with BAA Available

QG Case is designed for HIPAA-aligned deployments. Role-based access, audit logging, secure integrations, and Business Associate Agreement (BAA) available for organizations with HIPAA obligations.

Role-based access
Limit visibility by role and program.
Audit-ready
Traceability for critical actions.
Secure integrations
API-first approach with controlled access.
Access control
  • Role-based permissions (director, supervisor, care manager, analyst, admin)
  • Program scoping to limit PHI exposure
  • Least-privilege defaults
Data protection
  • HTTPS for user traffic and integrations
  • Secure credential handling
  • Configurable retention aligned to program policy
Auditability
  • Key actions logged for compliance review
  • Escalation traceability
  • Governance-friendly reporting
Integrations
  • API-based integrations for organizational data flows
  • Configured per client environment
  • Supports analytics exports

Business Associate Agreement (BAA) and HIPAA Compliance

BAA Available

A Business Associate Agreement is available for organizations with HIPAA obligations — including hospitals, health systems, and federally funded programs. QG Case is designed to operate within a HIPAA-aligned environment with appropriate administrative, physical, and technical safeguards in place.

Built for Healthcare Environments

QGCase Pro is the platform used by hospital-based violence intervention programs (HVIPs) including CHOP, Highland/Youth ALIVE!, and UMMS Shock Trauma VIP — environments where HIPAA compliance, PHI handling, and audit-readiness are non-negotiable requirements.

What "HIPAA-Capable" Means

HIPAA compliance is determined by the full implementation — hosting environment, access controls, logging, policies, and operational practices. QG Case provides the technical controls required: role-based access, PHI scoping, audit logging, TLS encryption, and secure integrations. Organizations are responsible for administrative and physical safeguards in their environment.

Procurement Support

We provide a security documentation package aligned to your procurement process — covering access controls, data handling, logging, integration architecture, and BAA terms. Designed for hospital procurement teams, county IT departments, and grant-funded programs with compliance review requirements.

Need a security overview for your procurement process?
We'll provide documentation aligned to your hospital, county, or grant compliance review — including BAA terms and technical controls summary.