generated: '2026-07-19' method: searched source: https://www.ferrumhealth.com/platform-and-tech + https://app.drata.com/trust/c68fe3bd-9955-4410-a324-c18c407d03a5/ note: >- Ferrum Health publishes no public API/OpenAPI, so no API-level standards (OAuth2, OIDC, FHIR, RFC 9457, etc.) can be asserted. The standards below are the security and privacy compliance frameworks the company publishes on its platform page and Drata trust center. standards: - id: soc2-type-ii conforms: true evidence: SOC 2 Type II badge on platform-and-tech page; SOC 2 listed on Drata trust center - id: iso-27001 conforms: true evidence: ISO 27001 listed on Drata trust center - id: hipaa conforms: true evidence: HIPAA compliance badge on platform-and-tech page; vendor-neutral, privately deployed with no PHI leaving the health system - id: gdpr conforms: true evidence: GDPR Compliance badge on platform-and-tech page