> ## Documentation Index
> Fetch the complete documentation index at: https://help.elationhealth.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Security & Privacy Settings Overview

> Summary of the settings available on the Security & Privacy Settings page, with links to detailed guides for each.

The **Security & Privacy** Settings page is where Admin users configure practice-wide security, patient data sharing, and privacy controls. This article summarizes the settings available there and links to the detailed guide for each.

## Who can access these settings

Only Admin users can view and edit **Security & Privacy** Settings. Go to **Settings** > **Security & Privacy** to open the page.

For more on which settings are Admin-only, see [User Accounts Guide — Administrative privileges](/articles/administrative-privileges).

## Settings on this page

### Multi-Factor Authentication

Require a second authentication factor (authenticator app, SMS, or email code) for users signing in to your practice's Elation account. Admins enable MFA at the practice level, and each user then sets up their own factors.

See [Multi-Factor Authentication Introduction](/articles/Multifactor-Authentication-MFA) for setup instructions and supported factors.

### Patient Data Sharing with Outside Care (Carequality)

Opt your practice in to Carequality so you can securely query and share patient records with other networks and EHRs via the Outside Care workflow. Toggling this on requires agreeing to the compliance terms.

See [Elation-Carequality Integration Introduction](/articles/Carequality-Integration-Introduction) for details.

### RxInform prescription reminders

Enable RxInform, a free service that sends prescription reminders to patients on your practice's behalf. Patients can opt out at any time, and clinicians or staff can manage opt-outs per patient in demographics or per prescription.

See [RxInform prescription reminders for patients](/articles/prescription-reminders-for-patients) for the enablement steps and workflow.

### Sensitive chart access rules (Premium)

Premium EHR Users can separately configure how Elation handles unauthorized access to sensitive charts, choosing between a warning and a hard block for:

* **Patient Cohorts** — restrict charts by patient criteria such as age or tag.
* **VIP charts** — restrict individual charts marked as VIP.

See [Patient Chart Guide — Restricting access to patient charts based on patient criteria](/articles/Patient-Chart-Guide-Restricting-access-to-patient-charts-based-on-patient-criteria) and [Patient Chart Guide — Marking charts as VIP for restricting access (Premium)](/articles/vip-chart-feature).

### Demographics Notes

<Note>
  **Beta feature:** The feature described in this section is part of a beta release and is only available to a select number of practices.
</Note>

The **Demographics Notes** card has a single toggle: **Share demographics notes with providers** (default: **On**).

* **On** — when a provider-facing letter or printout includes a demographics page, the patient **Notes** field from **Notes & Chart Management** is included on it.
* **Off** — the **Notes** field is suppressed from provider-facing letters and printouts that include a demographics page. Letters or printouts that do not include a demographics page are unaffected.

The setting applies only to provider-facing output. It does not change these behaviors:

* **Patient-facing letters** always exclude the **Notes** field.
* **Printing a patient's own chart** always includes the **Notes** field when the demographics page is part of the printout.
* **EHI exports and patient record exports** always include the **Notes** field, because those are the patient's complete record.

## Related Articles

* [User Accounts Guide — Administrative privileges](/articles/administrative-privileges)
* [User Accounts Guide — Best practices for keeping your Elation account secure](/articles/Best-practices-for-keeping-your-Elation-account-secure)
* [Elation features for Privacy Requirements](/articles/Features-for-Privacy-Requirements)
* [Patient Demographics Guide](/articles/Patient-Demographics-Guide)
