OUR COMMITMENT TO YOUR DATA

How We Secure Your Sensitive Data

Last Updated on March 25, 2026

A Dedicated Vault for Your Sensitive Data

Most companies store customers’ sensitive data, including name, payment details, and health records, in the same environment as all other data. If any part of that environment gets compromised, the co-mingled sensitive/non‑sensitive data is put at risk.

We do it differently. Customers’ sensitive data is isolated in a dedicated environment (a data privacy vault), which is separate from the analytics platforms, CRMs, data warehouses, customer support tools, and applications that use/query that data. PII, PHI, and PCI are isolated in that vault with fine-grained access controls and strict zero-trust policies. Downstream systems (analytics, marketing, support) work with tokens, not the underlying actual data. Sensitive data is de-identified as early as possible in the data lifecycle and re-identified only at the point of an authorized, policy-verified request. The actual sensitive values stay in that dedicated environment. That separation is enforced by architecture and zero-trust controls.
\
How We Protect Sensitive Information

Customers’ sensitive information is protected by an architecture that keeps it separate from other data, tightly governed, and secure at every layer of the stack:

  1. Your sensitive data lives in its own environment

    Personal information is isolated in a dedicated, tightly controlled environment. Other systems work with secure tokens, not your actual sensitive data.

  2. We use tokens, not your real information

    Sensitive data is replaced with tokens across the enterprise systems. These tokens are meaningless outside the controlled environment. Your real data stays protected.

  3. Encryption at every layer

    Your information is encrypted when stored, when moving between systems, and when being processed in memory. This exceeds standard industry requirements.

  4. Run workflows without decrypting your data

    By using privacy-enhancing techniques (PETs) like polymorphic encryption, we can operate on encrypted data. This means you can verify your date of birth, check a credit prescription, or confirm an address without ever exposing the underlying actual value.

  5. Access is strictly controlled

    Only people and systems with explicit authorization can reach your data. Every request is verified individually.

  6. Every access is logged

    Every time your sensitive data is accessed by a person, an application or an AI agent, it is recorded. We monitor these logs continuously.

  7. Your right to deletion is real

    Because your sensitive data is governed from the start, we can completely and accurately delete it (subject to regulatory restrictions) when you request it. There are no hidden copies. Because sensitive data is centralized in a dedicated environment (data privacy vault) from the start, fulfilling a deletion request is a single operation, not a search across every system that may have touched your data.

Independent Verification

Our data protection architecture is independently certified and continuously audited.

PCI DSS Level 1

PCI DSS Level 1

PCI DSS Level 1

Payment card data

Payment card data

SOC 2 Type II

SOC 2 Type II

SOC 2 Type II

Security and confidentiality

Security and confidentiality

HIPAA-ready

HIPAA-ready

HIPAA-ready

PHI compliant

PHI compliant

GDPR-compliant

GDPR-compliant

GDPR-compliant

Regulatory compliance

Regulatory compliance

How Our Approach Compares

Encrypt Only

Encrypt Only

Encrypt Only

Perimeter/DLP

Perimeter/DLP

Perimeter/DLP

Redaction

Redaction

Redaction

Andel Vault Architecture

Andel Vault Architecture

Andel Vault Architecture

Andel Vault Architecture

Foundation - Core Vault

Foundation - Core Vault

Foundation - Core Vault

Encryption at rest and in transit

Encryption at rest and in transit

Yes

Yes

Partial

Partial

No

No

Yes

Yes

Encryption in memory (active use)

Encryption in memory (active use)

No

No

No

No

No

No

Yes

Yes

Works across clouds and regions

Works across clouds and regions

Partial

Partial

Partial

Partial

No

No

Yes

Yes

Tokenization

Tokenization

No

No

No

No

No

No

Yes

Yes

Zero Trust access controls

Zero Trust access controls

No

No

Partial

Partial

No

No

Yes

Yes

Granular, attribute-level policies

Granular, attribute-level policies

No

No

No

No

No

No

Yes

Yes

Immutable audit logging

Immutable audit logging

No

No

Partial

Partial

No

No

Yes

Yes

Right to deletion

Right to deletion

No

No

No

No

No

No

Yes

Yes

Data utility preserved

Data utility preserved

Partial

Partial

Yes

Yes

No

No

Yes

Yes

Compliance

Compliance

Compliance

PCI DSS Level 1

PCI DSS Level 1

Partial

Partial

Partial

Partial

No

No

Yes

Yes

HIPAA / PHI protection

HIPAA / PHI protection

Partial

Partial

Partial

Partial

Partial

Partial

Yes

Yes

GDPR / CCPA / DPDP Act

GDPR / CCPA / DPDP Act

Partial

Partial

Partial

Partial

No

No

Yes

Yes

EU AI Act readiness

EU AI Act readiness

No

No

No

No

No

No

Yes

Yes

"Partial" means the approach addresses this in limited or conditional ways, typically requiring additional tooling.

Sign up for our company newsletter

By subscribing, you agree to our Privacy Policy and consent to receive updates from our company.

40 Wall Street, Suite 2834, New York, NY 10005

Andel is a revolution in drug affordability — a cooperative employee platform that unlocks access to GLP-1s and other brand-name medications.

The Andel Discount Drug Program is not insurance. The Andel Discount Drug Program offers reduced prices from participating providers, and discounts vary by provider and service. Participants are responsible for paying discounted charges, as the Andel Discount Drug Program does not make payments to providers on participants' behalf. Discounts are available only from providers who have contracted to be in network. For more information and a list of participating providers, please contact us at support@andel.org, or by calling us at (833) 962 6335. Andel is currently operational in New York State.

© 2026 Andel Co-op, inc. All rights reserved. Patent pending.

Sign up for our company newsletter

By subscribing, you agree to our Privacy Policy and consent to receive updates from our company.

40 Wall Street, Suite 2834, New York, NY 10005

Andel is a revolution in drug affordability — a cooperative employee platform that unlocks access to GLP-1s and other brand-name medications.

The Andel Discount Drug Program is not insurance. The Andel Discount Drug Program offers reduced prices from participating providers, and discounts vary by provider and service. Participants are responsible for paying discounted charges, as the Andel Discount Drug Program does not make payments to providers on participants' behalf. Discounts are available only from providers who have contracted to be in network. For more information and a list of participating providers, please contact us at support@andel.org, or by calling us at (833) 962 6335. Andel is currently operational in New York State.

© 2026 Andel Co-op, inc. All rights reserved. Patent pending.

Sign up for our company newsletter

By subscribing, you agree to our Privacy Policy and consent to receive updates from our company.

40 Wall Street, Suite 2834, New York, NY 10005

Andel is a revolution in drug affordability — a cooperative employee platform that unlocks access to GLP-1s and other brand-name medications.

The Andel Discount Drug Program is not insurance. The Andel Discount Drug Program offers reduced prices from participating providers, and discounts vary by provider and service. Participants are responsible for paying discounted charges, as the Andel Discount Drug Program does not make payments to providers on participants' behalf. Discounts are available only from providers who have contracted to be in network. For more information and a list of participating providers, please contact us at support@andel.org, or by calling us at (833) 962 6335. Andel is currently operational in New York State.

© 2026 Andel Co-op, inc. All rights reserved. Patent pending.