Skip to content
Compliance

What is HIPAA?

Also called: HIPAA compliance · protected health information · PHI

HIPAA is the federal law governing the privacy and security of protected health information. For billing it establishes three obligations: the standard electronic transaction formats, the Privacy Rule limiting use and disclosure of PHI, and the Security Rule requiring safeguards for electronic PHI.

A billing company is a business associate, not a covered entity, and may use PHI only as the Business Associate Agreement permits. That agreement is not a formality — it is the instrument that defines and limits what your vendor may do with your patients' data.

The Security Rule requires an actual risk analysis, not a checklist. Ask any prospective vendor when theirs was last performed and by whom.

Where Vizora handles this

Primary sources

Where "HIPAA" is defined by the bodies that set the rules, rather than by us.

Last reviewed August 20, 2026

Find out what your denials are costing you

A free billing audit reviews your denial rate, AR aging and clean claim rate against industry benchmarks. Takes about two minutes to request. No sales pitch.

No setup fees · You pay when we collect · Pricing from 3% of net collections