// THIMBLECART · FEATURES08 CAPABILITIES · 70+ INTEGRATIONS

The revenue engine of your telehealth operation. Plan chooser, checkout, and provider handoff, wired in.

Multi-plan checkout, intake automation, server-side attribution, and auto-provisioning into the patient portal, wired into your billing stack, your attribution layer, and your automation platform from the moment a patient pays.

See features ↓
01/ 08Multi-Plan Checkout

GLP-1 programs, subscriptions, add-ons. One flow, any offer structure.

Patients see every plan option in a single, branded experience. Apple Pay, Google Pay, Klarna, and FSA/HSA cards accepted out of the box.

Upsells, bundles, and add-ons slot in without touching the core flow. Launch new offers in hours, not weeks. Your monthly, quarterly, and annual plans live side-by-side under one cart.

  • Apple Pay, Google Pay, Klarna
  • FSA/HSA card acceptance
  • Upsell & bundle configuration
  • Branded checkout experience
  • New offer structures, no engineering
FIG. 01.0 · MULTI-PLAN CHECKOUT
cart.calderclinic.com / semaglutide● LIVE
Multi-Plan Checkout - plan chooser and branded cart flow
02/ 08Intake Automation

Formsort, Embeddables, Heyflow, Typeform, JotForm, or custom. We normalize and route the data.

Your intake form feeds directly into patient records and provider encounters with auto-normalization across any HIPAA-compliant form provider.

No CSVs, no copy-pasting. Data arrives clean, validated, and ready for clinical review the moment checkout completes. Field mapping is configured once and applied uniformly across every form vendor on your stack.

  • Formsort, Embeddables, Heyflow
  • Typeform, JotForm, custom builds
  • Auto field normalization & mapping
  • Validation rules with error surfacing
  • Direct feed to patient records
FIG. 02.0 · INTAKE AUTOMATION
portal.wizlo.com / treatment / dose-change● LIVE
Intake Automation - normalized form data in patient record
03/ 08Provider Handoff

Automatic encounter creation with any provider network.

When a patient checks out, their encounter is created in your provider network automatically, complete with intake data, plan details, and consent records.

Your ops team never touches it. Configure provider-specific routing rules, set fallback networks, and split traffic by product or geography. The dispatch layer is provider-agnostic and reconfigurable without an engineering ticket.

  • Any provider network
  • Auto encounter creation on checkout
  • Intake data & consent passthrough
  • Provider-specific routing rules
  • Fallback provider configuration
FIG. 03.0 · PROVIDER HANDOFF
admin / clinical / pharmacy● LIVE
Provider Handoff - encounter routing and pharmacy queue
04/ 08Attribution & CAPI

Server-side conversion data with hashed PII. Your ad spend is finally accountable.

Browser-side pixels are unreliable. ThimbleCart fires server-side conversion events to Meta CAPI and Google Ads using SHA-256 hashed PII.

iOS changes, cookie restrictions, and ad blockers kill attribution before it starts. Server-side firing means clean, matched, privacy-compliant signal regardless of what happens in the browser. UTMs, lead source, and full funnel analytics persist from first click to completed checkout. Know exactly which ad drove each patient and prove it to your media buyer.

  • Meta CAPI server-side events
  • Google Ads enhanced conversions
  • SHA-256 hashed PII (email, phone)
  • UTM persistence end-to-end
  • Lead source & multi-touch attribution
  • Conversion funnel tracking
  • Privacy-compliant by design
FIG. 04.0 · ATTRIBUTION & CAPI
admin / analytics / overview● LIVE
Attribution & CAPI - analytics overview and funnel metrics
05/ 08Stripe-Native Billing

Your Stripe account, your data. White-labeled with bidirectional sync.

We connect directly to your Stripe account, not ours. White-labeled per-company Stripe with bidirectional sync.

You own the customer relationship, the payment data, and the billing history. Subscription changes, failed payments, and refunds are handled automatically. Built to process any volume, from your first patient to your hundred-thousandth.

  • White-labeled per-company Stripe
  • Bidirectional data sync
  • Automatic failed payment recovery
  • Subscription lifecycle management
  • Scales to any transaction volume
FIG. 05.0 · STRIPE-NATIVE BILLING
cart.calderclinic.com (mobile)● LIVE
Stripe-Native Billing - mobile checkout and billing view
06/ 08A/B & Multi-Checkout

Run checkout variants. Test offer structures. Ship winners without engineering.

Test pricing, plan configurations, offer copy, and flow variants simultaneously across live traffic with per-variant conversion tracking.

Run multiple checkout experiences under a single brand simultaneously: different products, different price points, different patient segments, all managed from one admin panel. When you find a winner, it ships in hours. No engineering ticket, no sprint cycle.

  • Live traffic split testing
  • Variant-level conversion tracking
  • Pricing & offer structure testing
  • Multi-checkout from one panel
  • Segment by product, plan, patient type
  • No-code variant deployment
FIG. 06.0 · A/B & MULTI-CHECKOUT
admin / commerce / checkouts● LIVE
A/B & Multi-Checkout - admin panel with checkout variants
07/ 08Auto-Provisioning

A patient checks out. Their account is live. Their automation has already started.

Checkout completion triggers a full provisioning chain into ThimblePortal: account, encounter, welcome email, and automation sequence, all before your ops team sees the order.

The direct feed into the portal’s automation engine means checkout is not the end of the funnel. It is the beginning of retention. Onboarding flows, refill reminders, subscription nudges, and churn-risk sequences all start from the moment payment clears. Every step is logged with a full audit trail.

  • Instant patient account creation
  • Auto encounter dispatch
  • Branded welcome email delivery
  • Portal automation triggered on checkout
  • Onboarding, refill & retention flows
  • Full audit trail, payment to provisioning
FIG. 07.0 · AUTO-PROVISIONING
admin / communications● LIVE
Auto-Provisioning - communications and automation engine
08/ 08Subscription Lifecycle

Pause, skip, resume, plan changes with proration, and payment failure recovery.

Patients manage their own subscriptions: pause, skip a month, resume, or change plans with automatic proration.

Failed payments trigger smart recovery sequences. Your ops team handles exceptions, not the routine. Dunning emails, churn-risk escalations, and proration previews are wired in. Patients stay in control, your queue stays clean.

  • Self-service pause, skip, resume
  • Plan change with proration preview
  • Smart payment failure recovery
  • Dunning email sequences
  • Churn-risk escalation to ops
FIG. 08.0 · SUBSCRIPTION LIFECYCLE
admin / clinical / refills● LIVE
Subscription Lifecycle - refill queue and subscription management
// ALSO INCLUDED

The full stack.
Not the highlight reel.

Every feature ships with every plan. Nothing gated, nothing hidden behind an “Enterprise” wall.

01Idempotent webhook processing
02HMAC-verified webhook signatures
03Multi-form provider normalization
04Prior authorization workflows
05Payment failure notifications
06Auto-provisioning on checkout
► READY?

Ready to see thimblecart in action?

See a live build. Ask anything. We'll mock your real data and show how it behaves end-to-end.

30 MIN · NO SLIDES · LIVE BUILD
// INTEGRATIONS & PARTNERS

Any provider network.
70+ integrations.
All pre-built.

01Stripe
02Wizlo
03OpenLoop
04Healthie
05MDI
06CareValidate
07Twilio
08Resend
09SendGrid
10Formsort
11Typeform
12JotForm
13Google Calendar
14Greenwich RX
+56 MORE →
70+
Integrations
HIPAA + BAA
Included
Any
Provider Network
30+
Automation Actions
// BETTER TOGETHER · POWERFUL ALONE04 PRINCIPLES

Each product works standalone. Together, they eliminate every seam between marketing, checkout, and patient operations.

01// THIMBLECART → PORTAL → ADMIN

Checkout, Portal, Provider. Instantly connected.

A patient checks out. Their account is live. Their encounter is dispatched. You touched nothing.

02// WHITE-LABEL · MULTI-TENANT

One Brand, Every Touchpoint.

Your domain, your colors, your logo, from the marketing site through checkout into the patient portal. Patients never see a seam.

03// COMPLIANCE · AUDIT · BAA

HIPAA Across the Stack.

AES-256-GCM encryption, audit trails, and field-level PHI protection are not features you enable. They are the foundation everything runs on.

04// SCOPE MONDAY · SHIP FRIDAY

Your Dev Team, On Call.

Need a custom integration, a new workflow, or a feature built just for you? Our engineering team works directly with your operations. No ticket queue, no waiting.

// NOT JUST SOFTWARE

Scope it Monday.
Ship it Friday.

A development team at your fingertips.

Need a custom workflow, a new provider integration, or a feature built specifically for your operation? Our engineering team works directly with you. No ticket queues, no support tiers, no waiting.

  • Custom integrations
  • Dedicated engineering
  • Direct access, no ticket queue
thimble.eng · sprint-board
MON 09:14
Slack thread → scoped
Eng + Ops on call
SCOPED
TUE 11:02
PR opened
Branch · feat/mdi-fallback
IN REVIEW
WED 16:48
Staging deploy
Greenwich RX adapter v2
STAGING
THU 10:30
Customer UAT
Approved by Calder Clinic
UAT ✓
FRI 14:20
Shipped to prod
Auto-routing live
● LIVE
// SECURITY

Built in,
not bolted on.

Not a checkbox. A foundation.

► HIPAA · SOC 2 IN PROGRESS · BAA INCLUDED
01

AES-256-GCM Encryption

All data encrypted at rest and in transit using AES-256-GCM. No plaintext PHI touches disk.

02

Field-Level PHI Protection

PHI guardian test suite enforces field-level encryption across every model and migration.

03

HIPAA BAA Included

Business Associate Agreement included with every plan. No add-on fees, no separate negotiation.

04

MFA + SSO

Multi-factor authentication enforced for admin and clinical roles. SSO available for enterprise.

05

6-Year Audit Retention

Every action logged in an immutable audit trail. Retained for 6 years per HIPAA requirements.

06

Breach Incident Tracking

Built-in breach incident management with severity classification, timeline, and notification workflows.

07

Rate Limiting

16 tiered rate limiters across API, auth, and webhook endpoints. CSRF protection on every form.

08

Zero-Trust Architecture

Role-based access at every layer. 4-tier hierarchy with per-company data isolation and audit scoping.

// LET'S BUILD

Let's build your
telehealth operation.

Schedule a call with our team. We'll scope your launch, demo the platform, and map out your timeline. Your timeline starts here.

Build your stack