Identity
Supabase Auth with email verification and short-lived access tokens.
LABCAREHEALTH GROUPLabCare is designed around private storage, row-level access controls, server-only secrets, Stripe-hosted payments, and user-controlled data retention.
Supabase Auth with email verification and short-lived access tokens.
Private report bucket with per-user paths and signed access.
Postgres Row Level Security so members can access only their own records.
OpenAI requests originate from Netlify Functions; secret keys never appear in browser code.
Stripe Checkout handles cards and eligible wallets.
Admin access requires a database role and server-enforced policies.
This page describes planned controls, not a certification. Independent testing is required before production use.