Bounded runtime AI
Cairie uses Hathr.ai under a Business Associate Agreement. The shipped extension does not introduce a second runtime AI provider.
Security and privacy
Cairie handles PHI inside real Medicare workflows. The controls below describe what the product actually enforces. They are not a claim of HIPAA certification.
Each control sits at a real boundary: collection, memory, storage, AI dispatch, portal action, or audit.
Cairie uses Hathr.ai under a Business Associate Agreement. The shipped extension does not introduce a second runtime AI provider.
Sensitive persisted data is protected with AES-GCM in the browser. In-flight call context stays in memory wherever possible.
The product does not send screenshots, vision frames, or image content to an AI model. Portal assistance uses bounded page structure.
Submit, enroll, sign, pay, confirm, authorize, and similar actions require explicit agent approval.
Audit records capture what happened while stripping protected identifiers before entries are written.
URL allowlists and hard blocks constrain autonomous navigation. Sensitive CMS and ThinkAgent surfaces have additional boundaries.
Data path
Authorized portal context and optional on-device transcript text.
Call state stays in service-worker memory unless encrypted persistence is required.
Covered AI processing runs through Hathr.ai under BAA.
Low-risk preparation can run; commit-shaped actions pause for the agent.
Book a focused walkthrough of the live workflow, or join the launch list for the Chrome Web Store install link.
Prefer to try it yourself?