Iris
Hosted messaging platform

Customer messaging you can host, brand & trust.

Iris is the conversation layer for regulated support teams. Embed a chat widget, run your operators from one console, or build directly on the API — all on infrastructure that treats compliance as a default, not an upsell.

HIPAA-ready · tenant-isolated · append-only audit log
Built for teams that carry sensitive conversations
Diagnostic imaging Telehealth Patient portals Specialty clinics Radiology groups
One platform, three surfaces

Ship support the way that fits your stack.

Every surface shares one tenant, one audit trail, and one design language. Adopt one and add the others when you're ready.

Embeddable widget

Drop a single script tag on any site and a branded chat launcher appears. Guest sessions start instantly, then link to a verified identity when you're ready.

Install the widget

Operator portal

Your support team works a shared queue with presence, AI-drafted replies, room history, and routing — no install, just sign in and respond.

Open the console

API & integrations

Build with the REST API and realtime transport today. Webhooks and packaged client SDKs remain preview surfaces.

Explore the API
What's in the box

Core controls from the first message.

Realtime delivery

WebSocket transport with automatic retry and presence. Messages reconnect silently and never silently drop.

Multi-tenant isolation

Row-level security at the database keeps every customer's conversations provably separate — enforced, not promised.

Iris draft replies

Suggested responses sit beside the composer with a confidence score. Operators send, edit, or dismiss — the human stays in control.

Guest & linked identity

Start anonymous, then upgrade to a verified Auth0 or SSO identity mid-conversation without losing history.

Retention policies

Per-tenant retention windows with scheduled purge drills and verifiable evidence bundles for your auditors.

Webhooks & events

Preview. Outbound product webhooks are planned but are not an available integration surface yet.

Live in minutes

From signup to first message in one snippet.

Paste one script tag.

The widget self-mounts in a shadow DOM, so it never collides with your site's styles.

Authenticate from your backend.

Mint a short-lived session token server-side. Tokens never travel through query strings.

Respond from the console.

Conversations land in your operator queue the instant a guest says hello.

Open the quickstart guide

    
Compliance foundations

Core controls, with the remaining boundaries stated plainly.

Iris was built inside a HIPAA-regulated imaging network. Tenant isolation, audit, encryption, and retention tooling exist today; the early-access staging lane remains non-PHI while production recovery and compliance work is completed.

Read the compliance overview
Regulated-workflow foundationsEncryption and tenant controls are built in. Early access is non-PHI while production readiness is completed.
Provable tenant isolationPostgres row-level security policies isolate every tenant — verified by automated isolation checks.
Append-only audit logEvery message and admin action is recorded to an immutable, exportable trail.
Retention drills & evidenceScheduled purge drills produce signed evidence bundles your compliance team can hand to auditors.
Availability

Pricing is intentionally deferred.

Iris is in early access. Teams can sign up today and evaluate real, non-PHI workflows on the staging lane while paid production plans and live billing are finalized.

Now enrolling Early access
Free while in testing
For teams evaluating real workflows ahead of general availability.
  • Widget, operator portal, and product API
  • No credit card, no live billing
  • Production SLA and paid plans coming later
  • Non-PHI workloads only during early access
Sign up for early access
Get started

Your first conversation is one snippet away.

Create a workspace, invite your team, and copy your embed code in under five minutes. No credit card to start.