NR1] jAyAo7hQ pvcuZ knMw1Kciq $3 jOT5o cTvBm
C2 Vault is built on AWS with encryption, strict access controls, and HIPAA-ready safeguards — so you can focus on your pharmacy, not your data security.
Security built into every layer
Encryption
- All data encrypted in transit using TLS 1.2+
- AES-256 encryption for data at rest
- Payment info handled by Stripe — never stored on our servers
Access Control
- Optional two-factor authentication (TOTP) for pharmacy and staff accounts
- Role-based permissions limit data to authorized staff
- Session timeouts with secure token handling
- Every action logged in an immutable audit trail
Tenant Isolation
- Each pharmacy's data is fully isolated
- Row-level security policies enforce strict boundaries
- No cross-pharmacy data access is possible
Infrastructure
- Hosted on AWS in the United States
- Private VPC networking
- Automated daily backups with point-in-time recovery
Monitoring & Uptime
- 99.9% uptime SLA
- Continuous health monitoring and alerting
- Automated failover and recovery
HIPAA Compliance
- Designed to meet HIPAA Security Rule requirements
- Administrative, physical, and technical safeguards in place
- Business Associate Agreements available upon request
Add a second layer of protection
Protect your pharmacy and staff accounts with time-based one-time passwords. Simple to set up, hard for unauthorized users to bypass.
C2 Vault
Scan to enable 2FA
Authenticator App Support
Works with Google Authenticator, Authy, Microsoft Authenticator, and any TOTP-compatible app.
Recovery Codes
Get 10 one-time backup codes when you enable 2FA. Download or copy them so you're never locked out.
Staff Enforcement
Pharmacy admins can require all staff members to enable two-factor authentication before accessing the system.
Set up in under a minute
Scan the QR code with your authenticator app
Enter the 6-digit code to verify
Save your recovery codes in a safe place
Security questions, answered.
Have security questions? Let's talk.
We're happy to walk you through how C2 Vault protects your pharmacy data, or provide a BAA for your records.