Security & privacy

Privacy isn't a checkbox. It's our database design.

Wellness only works when employees trust the platform with their data. So we built one they can. Employers get the activity signals a program runs on. The personal parts — notes, biometrics, and clinical documents — stay with the employee.

Employers see

  • Logged activity per participant — type, duration, distance, effort, and points
  • Challenge progress, completion, and reward totals
  • Leaderboards and engagement trends (with per-employee opt-out)

Employers never see

  • Activity notes — free-text entries stay visible to the employee alone, enforced at the database layer
  • Biometrics — weight entries are owner-only; not even Bonnie's own admins can read them
  • Clinical verification documents — provider visit documentation is reviewed by Bonnie's ops team, never the employer

How we protect your team's health data

  • Treated as Protected Health Information (PHI) from the moment it's entered — and stored that way.
  • HIPAA Business Associate Agreement (BAA) signed with every customer, no matter the plan size.
  • Encrypted at rest and in transit, every record, all the time.
  • Every admin action is logged, so changes are reviewable on demand.

Your data is yours

Export on request. No selling. No advertising. Ever.

Compliance roadmap

HIPAA BAA included on every plan. SOC 2 Type II in progress.

Bring your security team.

We'll walk through the architecture line by line.