Security

Built to handle behavioral health data correctly.

Behavioral health carries some of the strictest privacy protections in healthcare, and PayerLenz is built around those protections from the ground up.

A Business Associate Agreement (BAA) is executed with every paid customer as part of onboarding: it isn't an optional add-on, it's a required step before a subscription begins. PayerLenz runs on HIPAA-eligible infrastructure with BAAs in place across our hosting and data providers, and our infrastructure vendors maintain SOC 2 Type II attestations. All data is encrypted in transit (TLS 1.2+) and at rest (AES-256).

Claims data contributed to the benchmark pool is de-identified before it's used to build any benchmark figure, and the pool never surfaces patient-identifiable information to another customer. Benchmark results enforce minimum claim-count floors and suppress small cells, so low-volume combinations that could point back to a single facility or arrangement are filtered rather than published. Access is role-based within your account, with pooled seats managed by your administrators.

Contribution safety

When you upload your historical claims to earn a discount, protected health information (PHI) is stripped before the financial data enters the aggregate pool. Your facility identity is never attached to a benchmark another customer sees, and minimum-volume floors keep your specific arrangements from being exposed through thin aggregates.