HIPAA Compliance for Your Business

If your business handles Protected Health Information (PHI) — for example, a medical, dental, or wellness practice — Vendi Today offers an optional HIPAA compliance package to help you meet your regulatory obligations.

What it covers

Once enabled, the HIPAA package encrypts PHI across the areas of the platform where it's likely to appear:

  • Contact records and notes
  • SMS and MMS messages
  • Voice recordings
  • Emails
  • Form and survey submissions
  • Calendar/appointment data
  • Invoices

Encryption uses 256-bit AES and is applied automatically at the database level — there's no manual configuration required once it's turned on. The package also enforces multi-factor authentication on your account and adds audit logging so activity can be reviewed later.

What's included

A Business Associate Agreement (BAA) is generated and made available for you to review, sign, and download directly within the platform — no outside paperwork needed.

Before you enable it

This is an important, permanent decision — read this carefully before purchasing:

  • The package cannot be canceled, refunded, removed, or downgraded once it's active. Because PHI can't be "un-encrypted" after the fact, there's no way to reverse it.
  • It applies at the account level, so once enabled it covers all the data in your account going forward.

How to enable it

  1. Go to Settings → Compliance.
  2. Purchase the HIPAA compliance add-on.
  3. Review and sign the BAA that's generated for you.
  4. Once signed, enable HIPAA mode from your Advanced Settings.

If you're not sure whether your business needs this, talk to your compliance or legal advisor first — this guide describes what the feature does, not whether HIPAA applies to your specific business.

Was this article helpful?