Skip to content

We can't claim we have a "HIPAA compliant" reference architecture — Use "HIPAA eligible" instead #530

@ebeneliason

Description

@ebeneliason

As reported in this Slack message:

We should call the HIPAA Ref Arch, "HIPAA eligible", as HIPAA compliance can only be conferred by an auditor.

As such we should do a scan of the language we're using to make sure we aren't overstating it. Since there's nothing contractual about the waitlist I don't think there's any potential legal ramifications yet, but it would be best to abide by the rules. We can probably talk about user's needs/goals in terms of compliance, just not our infrastructure itself, e.g. "Reach HIPAA compliance faster by building atop our HIPAA eligible reference architecture…"

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions