Site updates in progress — we’re refreshing pages, so you may see our older look or hit a rough edge. Thanks for bearing with us.
Compliance

HIPAA & Data Compliance

How we handle protected health information for clinical engagements.

HIPAA-conscious by design

Several Ars Innovate Technologies solutions - notably Ars Hygieia, our AI front-desk and booking assistant for clinical practices - are designed to handle protected health information (PHI) in line with the U.S. Health Insurance Portability and Accountability Act (HIPAA).

Business Associate Agreements (BAA)

Where an engagement involves PHI and Ars Innovate Technologies acts as a business associate, we will enter into a Business Associate Agreement (BAA) with the covered entity before any PHI is processed. Scope, safeguards, and responsibilities are defined per engagement in that BAA.

Safeguards

Ars Hygieia is built on HIPAA-eligible cloud infrastructure (Microsoft Azure) with administrative, physical, and technical safeguards: encryption in transit and at rest, role-based access controls, audit logging, and least-privilege data handling. Each deployment is built for the individual practice, not a shared generic template.

Scope and limits

This statement is informational and does not itself create a legal relationship or constitute legal advice. HIPAA has no government “certification”; compliance is demonstrated through safeguards, policies, and a signed BAA specific to each engagement. Marketing pages and general website interactions do not involve PHI.

Contact

To discuss a HIPAA-covered engagement or request a BAA, email jmcclure@arsinnovate.com.