HIPAA Compliance | Dental Marketing Tool
Compliance

HIPAA-Compliant by Design

We don't bolt compliance on after the fact, it's built into every feature from the ground up.

Our Commitments

How We Protect Your Patients

Six core commitments that govern how we handle every piece of protected health information.

🔐
Data Encryption
All PHI in transit (TLS 1.3) and at rest (AES-256). Call recordings are encrypted immediately on capture.
🛂
Access Controls
Role-based access, MFA required for all staff accounts, audit logs retained for 7 years.
⚖️
Minimum Necessary
We access only the PHI required to deliver the contracted services, nothing more.
🚫
No Training Use
Patient data is never used to train AI models. Period.
🇺🇸
US-Based Storage
All data stored on US-based, HIPAA-eligible cloud infrastructure. No data leaves US jurisdiction.
🚨
Breach Response
Documented breach notification procedures per HIPAA §164.410. We notify within 60 days of discovery.
Infrastructure

Technical Safeguards

The controls we've implemented at the system level to ensure PHI is protected at every touchpoint.

Beyond HIPAA: We comply with state-specific call recording consent laws (TCPA, CIPA, and two-party consent states). Every AI call opens with a required disclosure before any conversation begins, automatically, every time, without exception.

Common Questions

Compliance FAQ

Where is patient data stored?
All data is stored on US-based cloud infrastructure. No patient data ever leaves US jurisdiction. We review our hosting providers' compliance posture at every contract renewal to ensure they meet HIPAA security requirements.
What happens if there's a data breach?
We follow HIPAA breach notification rules per §164.410 and notify all affected practices within 60 days of discovery. We maintain cyber liability insurance and have a documented incident response plan. In practice, our layered security architecture is designed to prevent breaches from occurring, but we take the regulatory requirements seriously regardless.

Questions about compliance? Talk to our team.

We're happy to walk through our safeguards and answer any questions about how we protect patient data.

Contact Us →