Data ownership and approved-device controls
This guide explains how care teams keep control over records while limiting access to approved users and devices.
Core concepts
- Local-first capture keeps primary records on caregiver devices.
- Encrypted sync protects data while it moves between approved devices.
- Role-based access limits what each user can view or modify.
How to keep access safe
- Remove old or lost devices from your approved list immediately.
- Review active members and roles after staffing changes.
- Use strong screen lock settings on every caregiver phone.
- Revoke invites that were sent to incorrect email addresses.
Example access cleanup
A contract caregiver leaves the team. Admin removes member access, revokes pending invites linked to that person, and confirms no active sessions remain on previously approved devices.
When to escalate
- Suspected unauthorized login attempts.
- Lost device containing active caregiver session.
- Unexpected patient records visible outside intended family context.