Foyer
Security & privacy

PHI never enters the platform. By design.

Foyer is built for the front desk — answering questions, capturing leads, booking time. It is deliberately not a HIPAA Business Associate, and it is engineered so protected health information never lands in our systems in the first place.

The differentiator, stated plainly

Most chat tools ask you to trust their handling of sensitive data. Foyer takes a different path: it is scoped for front-desk conversations so that protected health information has no reason — and no route — to enter the system. If a visitor starts to share health details, the assistant is designed to steer the conversation to a secure, human channel instead of recording it.

Our approach

Built so the safe thing is the default

No PHI, no BAA needed

Foyer is scoped for front-desk use and is not a HIPAA Business Associate. Health data has no path into the platform — so there is nothing sensitive to mishandle.

Strict tenant isolation

Each customer's data lives in its own logical tenant. Conversations, knowledge, and leads are never commingled or visible across accounts.

Secrets stay server-side

API keys, model credentials, and integration tokens never reach the browser. The embed ships only what the widget needs to render.

Encrypted in transit and at rest

All traffic runs over TLS, and stored data is encrypted at rest. The widget itself defers loading so it never weakens your page either.

Knowledge you approve

The assistant answers only from sources you have approved, and any new knowledge it drafts waits for your sign-off before going live.

Auditable by default

Every conversation, handoff, and knowledge change is logged, so you can review exactly what was said and answered, when.

You stay in control of your data

Your conversations and knowledge are yours. Export them whenever you like, delete them on demand, and know exactly which tenant they live in — never commingled with anyone else's.

Export anytime
Pull your full conversation and knowledge history on demand.
Delete on request
Remove conversations or your entire workspace — and we honor it downstream.
Data-processing addendum
A standard DPA is available for your legal and security review.
Clear sub-processor list
Know exactly which providers touch your data, and how.
TLS everywhere
Encrypted in transit
Encrypted at rest
AES-256 storage
DPA available
On request
Tenant isolated
No commingling

For your security team

Foyer is intentionally not a HIPAA Business Associate. Rather than process protected health information under a BAA, it is designed so PHI never enters the platform at all — it handles front-desk questions, scheduling, and lead capture, and steers any health-specific detail to a secure human channel.

Forward this to your security team

Want the full data-processing addendum, sub-processor list, or a security questionnaire completed? We're ready.