Trust Center
What VitalCV checks — and what it does not decide.
VitalCV never asks anyone to take a claim on faith. Every field names its source and shows its state, every unknown stays visibly unknown, and the final credentialing decision always belongs to the employer.
What we check
The sources VitalCV reads, and whether they're available today
NPPES Identity
Wired and returning data.
OIG Exclusions
Wired and returning data.
State License
A source exists; access is not yet in place.
PECOS Enrollment
Wired and returning data.
Employment History
On the roadmap; not connected today.
Board Certification
On the roadmap; not connected today.
Availability describes the lane, not any one clinician — an “available” source has not checked you until you run it.
The grammar
What each evidence state means
- Source-backed
A primary source returned this value.
- Checked
A check ran against the source and returned no adverse result.
- Self-attested
Entered by the clinician; not yet confirmed by a source.
- Needs review
Flagged for human or employer review before it can be relied on.
- Access required
A source exists but VitalCV does not have access to it yet.
- Unavailable
The source is temporarily unreachable; nothing was returned.
- Employer decision
Only an employer or institution can decide this.
A check mark appears only for source-backed and checked — never for gated, unavailable, or self-entered evidence.
The boundary
What VitalCV does not decide
VitalCV assembles source-backed evidence. It does not credential, privilege, or clear anyone.
- • A source-backed identity is not a completed credentialing decision.
- • “No match in the current LEIE file” is not a guarantee of good standing — the file is published monthly, so a recent exclusion may not be in it yet.
- • Readiness is a picture of what sources return today — not employer approval.
- • The institution’s review remains the final step, always.
Your record
The controls you keep
You own it
Your wallet, source checks, and receipts live in a record you own — not an employer’s filing cabinet. It leaves with you.
Sharing is explicit
Nothing is shared until you share it. A shared proof packet names exactly what the recipient can see.
Corrections have a path
When a source value is wrong, you can flag it and attach supporting evidence — prior evidence and timestamps are preserved, never silently overwritten.
Consent is withdrawable
Access you grant can be withdrawn; each open and each acceptance is recorded in your activity.
These controls live in your CV Wallet once you activate it.
How we handle data
Security & data practices
VitalCV reads public professional identifiers and authoritative source data. It is built around a simple rule: no protected health information is placed on any shared or anchored artifact.
Receipts are signed with an ES256 key (ES256); the public key and issuer identity are published so a recipient can check a receipt independently. Every mutation to your record is written to an audit trail before it takes effect.
To report a security issue, email security@vitalcv.com.
Go deeper