About mintfax
An outbound fax API built for B2B SaaS engineering teams in regulated industries.
mintfax is an outbound fax API for engineering teams building B2B SaaS in regulated industries. We provide a modern API surface (REST, JSON, OpenAPI 3.1, signed webhooks, idempotency keys) and healthcare-grade compliance posture (BAA on every paid tier, AES-256 at rest, TLS 1.2+ in transit, per-workspace immutable audit log) - without the enterprise plans, seat licensing, or procurement cycles that competing fax APIs make customers absorb.
The product runs on an always-on AWS-shaped transaction path: API Gateway, an ingest Lambda, DynamoDB for hot state, SQS for queueing, and S3 for fax document staging. The application layer (control panel, billing, carrier orchestration) is a Laravel application that submits faxes to upstream carriers - InterFax (Upland) at first, with a second carrier active/active in evaluation. Customer integrations talk to one stable mintfax API surface; the carrier abstraction is internal.
Leadership
Operating commitments
mintfax is the same API and the same compliance posture across every paid tier. There are no premium-tier features. There are no enterprise-only capabilities. The commitments below apply to every customer, on the free sandbox and on every paid tier.
- BAA on every paid tier. Free, self-serve, signed via DocuSign in your dashboard.
- Encryption. AES-256 at rest. TLS 1.2 minimum in transit, with TLS 1.3 on customer-facing endpoints.
- Per-workspace immutable audit log. Retained for the lifetime of the workspace; exportable as JSON or CSV.
- Signed webhooks. HMAC-SHA256 with timestamp replay protection on every callback.
- Idempotency keys. On all POST endpoints, with 24-hour key TTL.
- Built-in retries. Default 3 attempts with exponential backoff; configurable up to 8 per submission.
- Stable error taxonomy. Mintfax-owned error codes with actionable next-step hints; raw carrier codes retained for support.
- OpenAPI 3.1 spec and
llms.txtdiscoverable at predictable URLs. - Email response within one business day, faster on real outages.
- No seat licensing, no monthly minimums, no API gating. Per-page pricing applies on every paid tier.
Compliance
mintfax is HIPAA-aligned by design and operates against the 2026 HIPAA Security Rule requirements. Free BAA on every paid tier. AES-256 at rest, TLS 1.2+ in transit. SOC 2 Type II audit kickoff scheduled for Q3 2026. Full posture, including subprocessors, retention modes, and the BAA template, is on our compliance page.
Contact
For sandbox access, integration questions, or anything else: [email protected].
For compliance, security, or procurement: [email protected].
For high-volume contracts: [email protected].
Full email-alias routing on the contact page.