In conjunction with

Patented No-Login Secure Digital Transport for Sensitive Data

Botdoc operates in the secure data exchange market, moving sensitive documents and information between organizations and the people they serve without requiring recipients to create an account or sign into a portal. The company was founded in Monument, Colorado in January 2014 as ShortSave, Inc. and rebranded to Botdoc in September 2016, following a 2013 prototype that demonstrated end-to-end file delivery with no recipient login. Customers span banking, healthcare, education, government, and automotive retail.

The underlying SDT Engine exposes four transport primitives: PUSH to send data one direction, PULL to request it back, a P2 secure container that wraps multiple interactions in a single session, and container-scoped PUSH and PULL. Developers trade an API key for a JWT token under RFC 7519, create a container, then receive signed callbacks when a recipient completes an interaction. Payloads travel over TLS and rest under AES-256 with per-transaction keys held in Azure's hardened key store, and data is purged after the delivery window.

What separates the approach from portals and encrypted email gateways is removing recipient credentials entirely, which also removes the credential vaults and gateway infrastructure that widen attack surface. The patent portfolio covering the engine spans the United States, Canada, the European Union, Australia, Japan, and India, with the first U.S. grant in November 2019. Stated compliance posture includes SOC 2 Type 2, HIPAA, GLBA, PCI DSS, and FERPA. Third parties including Edward Jones and VedaPointe have built products on the platform.

Market Segment:

Data Security

Categories:

DS - Secure Data Sharing