Looking for some community’s insight here, since TB itself does not have any reliable workaround to offer.
Context
My app handle sensitive personal data, the same level of sensitivity that an hospital handles medical patients information.
Issue
Currently, there is no way to tell who access which page/records to trigger alerts or at least have an access log to track and know who saw information without authorization. This cause a major potential data breach issue, and we have no way of knowing that and who is at fault.
Solution?
Since TB is HIPAA graded, I would assume there’s some basic security features for that, but apparently not. So how do you manage that situation with personal data at stake? Did you created some custom features?
Thank you!