← Back to home

HIPAA-Conscious Design

Golden Years AI is built with HIPAA-conscious safeguards. We are not a Covered Entity by default, but we treat all Protected Health Information (PHI) with the care HIPAA requires.

Our safeguards

  • Encryption in transit (TLS 1.2+) and at rest
  • Access controls: only authenticated users see their own data
  • Audit logging of all data access
  • Business Associate Agreements (BAAs) with our infrastructure providers
  • De-identification of AI training data

For care facilities (Professional plan)

Our Professional tier includes a signed BAA, dedicated audit exports, and staff-level access controls suitable for HIPAA-covered environments.

Contact: compliance@goldenyears.ai for BAA requests.