Security

Your records, handled carefully.

You're trusting us with sensitive injury and business records. Here's how we treat them.

Encryption

Data is encrypted in transit (TLS) and at rest. Documents live in access-controlled storage.

Least privilege

Access is scoped to the task at hand. Filing credentials are stored per account, never shared across customers.

Tamper-evident record

Every filing keeps a hash-chained evidence ledger — a verifiable history of exactly what was filed and when.

You authorize

Nothing is submitted to a regulator without your explicit review and authorization. No surprises.

No fabricated data

AI drafts carry a confidence signal and link to the source. You verify before anything is filed.

Responsible disclosure

Found something? Email security@regfile.org and we'll respond quickly.

This page describes our practices in plain language; it isn't a contractual security commitment. Enterprise customers can request our current security documentation.

Trust before intake

Review the filing profile before you share records.

The public checker shows the filing families tied to location, what your business does, employee count, and facility signals before document upload or account setup.

Live security-page fit check

Sample result before uploading records

Checking

Checking the current filing rules for a mid-size business in this state.

Run this before upload

Keep the calendar visible

Get deadline reminders while your team reviews security.

Start the filing checker →