The Wise Earth

BioBalance Journal

Security

Security is part of the product experience.

BioBalance is being prepared with secure accounts, encrypted storage, careful sharing, and billing handled by Stripe-hosted checkout.

Built for sensitive health information

The production foundation is planned around AWS Cognito, DynamoDB, S3, API Gateway, Lambda, HTTPS hosting, and access controls tied to the signed-in user.

Coming soon

Private pilot security review is in progress.

Before broad launch, BioBalance should complete permission testing, file upload hardening, audit logging, backup planning, incident response procedures, and legal/privacy review.

Planned safeguards

  • Cognito sign-in with user-owned records.
  • Encrypted database and file storage.
  • HTTPS-only hosted app experience.
  • Section-based share controls and redaction.
  • Export/delete data controls.
  • Stripe-hosted payment flow so full card numbers are not stored in the app.

Responsible launch checklist

  • Pen-test the API routes and file upload flow.
  • Confirm every record is locked to the signed-in Cognito user.
  • Publish attorney-reviewed privacy, terms, and disclaimer language.
  • Document support, deletion, breach, and consent workflows.