Skip to main content

How-To Guides

Practical guides for practice managers navigating HIPAA compliance and choosing the right task management software.

Page 3 of 5

Is OneDrive HIPAA Compliant? Personal vs. Business Accounts Explained

Guide

OneDrive personal accounts are not HIPAA compliant and cannot be made so. OneDrive for Business can be compliant under a Microsoft 365 business plan with the Microsoft HIPAA BAA accepted. Here is what that requires.

Updated Mar 21, 2026

Is Otter.ai HIPAA Compliant? No — Here's Why It Matters

Guide

Otter.ai does not offer a HIPAA Business Associate Agreement and cannot be used for any recordings or transcriptions involving protected health information. Here's what the risks look like and what to use instead.

Updated Mar 21, 2026

Is Outlook HIPAA Compliant?

Guide

Personal Outlook.com is not HIPAA compliant. Outlook within Microsoft 365 business plans can be — but only after signing Microsoft's BAA and enforcing email policies. Here is what small clinics need to know.

Updated Mar 21, 2026

Is Pipedrive HIPAA Compliant? No — Here's What That Means for Medical Practices

Compare

Pipedrive does not offer a HIPAA Business Associate Agreement and cannot be used with protected health information. Medical practices using Pipedrive for patient tracking need a compliant alternative.

Updated Mar 21, 2026

Is ProtonMail HIPAA Compliant? Why Encryption Alone Is Not Enough

Guide

ProtonMail does not offer a BAA and is not HIPAA compliant for healthcare use. Strong encryption is one requirement among many. Here's what clinics need instead.

Updated Mar 21, 2026

Is RingCentral HIPAA Compliant? A Guide for Medical Practices

Guide

RingCentral can be HIPAA compliant, but only when properly configured and with a signed BAA. Default accounts are not covered. Here's what your practice needs to do before using RingCentral for patient communications.

Updated Mar 21, 2026

Is SharePoint HIPAA Compliant?

Guide

SharePoint Online within Microsoft 365 can be HIPAA compliant, but only after signing Microsoft's BAA and restricting external sharing. Here is what small clinics need to know.

Updated Mar 21, 2026

Is Salesforce HIPAA Compliant? What Medical Practices Need to Know

Compare

Salesforce can be HIPAA compliant — but only with a BAA and on qualifying plans. Standard Sales Cloud and Marketing Cloud have no automatic HIPAA coverage. Here's what medical practices actually need.

Updated Mar 21, 2026

Is Signal HIPAA Compliant? No — And Encryption Isn't the Reason

Guide

Signal is not HIPAA compliant. Despite strong end-to-end encryption, Signal does not offer a BAA, has no audit logs, and its disappearing messages feature conflicts directly with HIPAA's 6-year records retention requirement.

Updated Mar 21, 2026

Is Square HIPAA Compliant? Payments vs. Scheduling vs. PHI

Guide

Square does not provide a BAA for standard accounts. Payments alone are governed by PCI DSS, not HIPAA. Using Square Appointments with health-related details is a different story.

Updated Mar 21, 2026

Is Texting HIPAA Compliant? Standard SMS and What to Use Instead

Guide

Standard SMS text messaging is not HIPAA compliant. Messages travel unencrypted over carrier networks and carriers cannot sign BAAs. Here's what small clinics use instead.

Updated Mar 21, 2026

Is WhatsApp HIPAA Compliant?

Guide

WhatsApp does not offer a HIPAA BAA and cannot be made compliant. Learn why encryption alone is not enough and what compliant alternatives exist for small clinics.

Updated Mar 21, 2026

Want help with HIPAA compliance?

Try PHIGuard free for 14 days. No credit card required.