Is there a prescription subscription app without customer data access?

Is there a prescription subscription app without customer data access?

itear100
Visitor
2 0 0

is there a subscription app which DOES NOT have access to customer information? 

Replies 3 (3)

Mac
Shopify Staff
1702 178 295

Hi, @itear100!

Thanks for reaching out in our Community forums and for sharing your concern, I’d be happy to help.

 

I appreciate you taking an extra step to protect customer information when it comes to using third party apps. Although each app has measures in place to ensure the data is secure, I do believe that certain apps require specific information to operate. Are you able to outline your specific requirements and I can look to see the most appropriate solution.  

 

If you are looking for a more custom solution without the use of a third party app, then I recommend speaking with Shopify Experts. This is a marketplace that connects you to professionals in a variety of fields related to your e-commerce business. Doing so will allow you to outline your exact requirements and specifications. If you would like to know more about finding the right Expert, please click here.

 

Feel free to reply back to this thread with any questions or updates and we can continue our conversation further!

Mac | Social Care @ Shopify 
 - Was my reply helpful? Click Like to let me know! 
 - Was your question answered? Mark it as an Accepted Solution
 - To learn more visit the Shopify Help Center or the Shopify Blog

FDG_WEB
Shopify Partner
103 2 10

We do this all the time for our HIPAA compliant / Medical customers that deal in PHI information like prescriptions. You have to do it with a custom/private app that acts outside of the Shopify customer and order information and stores the data in a HIPAA-compliant manner. E.g. uses NIST approved encryption standards, TDE, key server & key rotation and so on.

A 3rd-party app would never work for this because you'd be sending PHI to an entity that probably is not going to sign the required BAA agreement you'd need in order to be compliant. They also probably not logging in a way that complies with the HIPAA audit rule.

These apps are not difficult to create, it's just that 90% of the ones we see are not doing in a HIPAA compliant manner.

 

Happy to talk with anyone interested in learning more if they have that need.

 


Tom Granger, CEO
FDG Web, Inc
Office: 360-572-0398 : Ext. 108
Cell: 425-466-0804
www.fdgweb.com

info@fdgweb.com

hacketyapps
Shopify Partner
44 2 5

The short answer is no.