Health Data

HIPAA Ready Virtual Inspection Software

Safeguards for inspections that touch protected health information.

The Health Insurance Portability and Accountability Act (HIPAA) governs how Protected Health Information (PHI) is handled by covered entities and their business associates. Inspections in healthcare facilities, medical device manufacturing, and life sciences often touch PHI incidentally — VIP is built to handle it safely.

Safeguards Implemented

HIPAA requires three categories of safeguards. VIP implements each:

  • Administrative — workforce training, access management, incident response, contingency planning

  • Physical — facility access controls, workstation security, device and media controls

  • Technical — access control, audit controls, integrity, transmission security, encryption

Business Associate Agreements

VIP executes a Business Associate Agreement (BAA) with any covered entity or business associate that requires one before PHI enters the platform. Contact your account team to initiate a BAA.

Minimum Necessary and Breach Notification

Access controls enforce the HIPAA minimum-necessary principle. In the event of a suspected breach, VIP follows the HIPAA Breach Notification Rule timelines and coordinates directly with the covered entity.

Frequently asked

Will you sign a BAA?

Yes. BAAs are available for enterprise customers processing PHI on the platform.

Talk to sales

Need documentation for procurement?

Enterprise customers can request reports, questionnaires, and DPAs through their account manager or by contacting our security team directly.

Get started

Ready to run your first virtual inspection?

See verified remote capture in action, or dive straight into pricing built for teams that inspect at scale.

Privacy