Browser
The authorized user begins and reviews the workflow.
Security designed to be understood and verified
Molaris creates clinical drafts, keeps the clinician in control, and can send approved content to Open Dental. This page maps the current boundaries plainly.
This is an explanatory system map, not a certification, audit report, or promise that a particular agreement is automatically included.
The shortest accurate view of the system, from practice browser to approved destination.
The authorized user begins and reviews the workflow.
Server-side requests proxy connected services.
Application rows use practice-scoped access policies.
OpenAI handles transcription; OpenAI or Anthropic can draft notes.
Only the relevant user action can initiate writeback.
Generation, approval, and filing are deliberately separate states.
Once approved, the record locks. A later correction creates a separate pending amendment; the signed original remains unchanged.
If Open Dental writeback does not complete, the signed content remains available in Molaris and the failure is reported instead of being presented as success.
These application controls complement, not replace, practice device, workforce, consent, and access policies.
The exact provider set depends on the features and model configuration a practice uses.
Before sending protected health information, confirm the provider configuration, retention terms, contractual requirements, and any business associate agreements required for your practice. Review the Privacy Policy and Terms; executed agreements control over this page.
These are deployment questions, not fine print to defer until after launch.
The demo uses fictional data and exposes draft, review, approval, locked-note, amendment, destination, and failure states.
Open the live demo →Recordings exist to produce your documentation. Audio is encrypted in transit and at rest, kept attached to its note so the provider can replay it during review, and is never used to train shared or third-party models. Practices can request deletion of any recording — or all of them — at hello@getmolaris.com; deletion is confirmed in writing.
Molaris uses a small set of vendors to run the service: Supabase (database and authentication), Vercel (hosting), a HIPAA-eligible transcription provider under BAA, Stripe (billing — never receives patient data), and Resend (transactional email — patient emails carry links, not clinical content). Business Associate Agreements are maintained with every vendor that touches protected health information.
Email hello@getmolaris.com from your account address to request an export or deletion. We verify the request with the practice owner, complete it within 30 days, and confirm in writing. Signed clinical records may be retained where law or your own record-keeping obligations require it.
Found something? Email hello@getmolaris.com with SECURITY in the subject — we read those first.