2 ways to deploy. One platform.
Identical outputs and the same verification rigor: you choose where the records live and where the models run.
Answer 4 quick questions — the plan that fits lights up below, with the trade-off spelled out.
Answer above — the plan that fits lights up below, with the trade-off spelled out.
Self-Service
Pay per page in our HIPAA-eligible cloud, no subscription, no procurement.
On-Prem / Private Cloud
Full stack inside your infrastructure. Air-gap option.
From 10¢ a page down to as low as 5¢, duplicates free, against your Tuesday.
Set your volume and what review costs you today (outsourced, in-house, or another tool). Self-Service has no license and no seats: the flat page rate is the whole bill.
Rough estimate: actuals depend on your file mix and volume. See what Self-Service includes.
Everything procurement scans for.
Enterprise identity, provisioning, and access control: stated in the exact terms your security review checks against.
Autonomy you can take to your risk committee.
The analysis is autonomous and machine-verified. The actions are governed. Your experts make the calls, always.
Scoped actions
The system operates from an explicit command whitelist — anything outside scope is structurally impossible, not just discouraged.
Approval-gated writes
Any action that leaves the platform (export, notification, external request) requires explicit human approval. Analysis is autonomous; action is governed.
Tamper-evident audit trail
Every processing step, access event, and agent action is logged in an HMAC-signed, append-only trail — auditable by your team or a third party.
Explainable outputs
Every conclusion traces to source pages and a visible reasoning chain. No black-box verdicts. Your data is never used for model training without written consent.
The spec sheet.
Built for portfolios, not sample files — and stated plainly, with nothing overstated.
Visit the Trust CenterA named customer success manager, not a queue.
Response times in the contract, not the marketing.
Adoption program mapped to your desks and lines.
A standing review with your security team.
What your security review will ask.
Yes. On the Enterprise On-Prem plan the full stack runs inside your own infrastructure or private cloud, with an air-gap option, so records never leave your network. On Self-Service, records run in our HIPAA-eligible cloud under our BAA.
Yes, on all cloud plans, covering AES-256 at rest and TLS 1.2+ in transit. An on-prem deployment keeps PHI inside your own network, so there is no transit for us to cover.
Yes — the full stack inside your infrastructure or private cloud, with an air-gap option for sovereignty requirements. Typical deployment runs about 4 weeks.
Never. It's contractual (in the BAA), not a settings toggle.
Human-QA vendors sample. Medrecords machine-verifies every extraction on every page — deterministic citation verification plus an independent cross-model check — the same rigor at page 1 and page 10,000. Your experts still make the calls.
2 things most alternatives can't offer: verification that runs on every page rather than a sampled human QA pass, and deployment flexibility — our HIPAA-eligible cloud, or the full stack inside your own network.
Self-Service starts the same day, in our HIPAA-eligible cloud, with no IT ticket needed. Enterprise on-prem deployments take roughly 4 weeks, scoped with your infra team. SSO and API setup are part of the guided enterprise path.
Deploy it your way. Verify everything.
2 deployment models, one platform, the same verification rigor on every page.