EasyTheraNotesPrivacy · Terms · HIPAA · BAA

HIPAA Compliance

Last updated: March 2026

Our Commitment to HIPAA Compliance

EasyTheraNotes is designed, built, and maintained in full compliance with the Health Insurance Portability and Accountability Act (HIPAA) of 1996 and all subsequent amendments, including the HITECH Act, the Omnibus Rule of 2013, and the proposed 2025–2026 Security Rule updates.

1. Overview of HIPAA Rules

EasyTheraNotes complies with the following core HIPAA regulations:

2. 2025–2026 Regulatory Updates

EasyTheraNotes proactively aligns with the latest HIPAA regulatory changes:

3. Administrative Safeguards

We maintain the following administrative safeguards:

4. Technical Safeguards

5. Physical Safeguards

6. AI Processing & PHI Protection

EasyTheraNotes uses artificial intelligence to assist with clinical documentation. We implement the following safeguards for AI-related PHI processing:

7. Telehealth & Video Conferencing Security

EasyTelehealth provides HIPAA-compliant video conferencing with the following safeguards:

8. Business Associate Agreements (BAAs)

EasyTheraNotes maintains Business Associate Agreements with all third-party vendors that create, receive, maintain, or transmit ePHI:

All BAAs include provisions for permissible uses and disclosures of PHI, obligation to implement appropriate safeguards, breach notification obligations, subcontractor compliance requirements, and return or destruction of PHI at contract termination.

9. Patient Rights Under HIPAA

Patients whose information is processed through EasyTheraNotes retain the following rights:

10. Breach Notification Procedures

In the event of a breach of unsecured PHI, EasyTheraNotes follows these notification procedures:

11. Data Retention & Disposal

12. Cloud Infrastructure & Security Certifications

13. Risk Assessment & Compliance Program

14. Disaster Recovery Plan

EasyTheraNotes maintains a documented Disaster Recovery Plan (DRP) to ensure continuity of service and protection of ePHI in the event of a disaster or system failure:

15. Contact Information

For questions about our HIPAA compliance practices, to submit a PHI access or amendment request, or to report a suspected breach, please contact:

HIPAA Compliance Officer

EasyTheraNotes

Email: admin@easytheranotes.com

Questions: admin@easytheranotes.com