Tiny checks agency and role before reading or changing child records, keeps files behind authenticated access, appends audit events, and excludes protected health information from account email.
Every request to read or change a protected record resolves the signed-in person, active agency, and role on the server. A route name or hidden button is never treated as the security boundary.
A secure account still needs a clear recovery path. Tiny Solutions combines sign-in methods, session visibility, role management, and step-up checks around sensitive actions.
Infrastructure boundaries matter because not every service in a software stack should receive child or family information.
HIPAA and FERPA obligations also depend on agreements, device practices, staff training, access reviews, and the agency choices made after setup.