Skip to main content

Business Associate Agreement (US)

Last updated: 3 July 2026

The UK GDPR Data Processing Agreement on our main site does not apply to this US service. A US practitioner who is a HIPAA Covered Entity and uses the service for PHI will need a Business Associate Agreement (BAA) covering how we handle protected health information as your business associate under HIPAA.

The customer-facing BAA and supporting vendor chain are still in legal and technical review and are not yet offered for signature. Covered Entities should not enter PHI until a BAA has been executed and we confirm the HIPAA service is available. When ready, active US subscribers can request a copy by emailing info@hypnoadminpro.com.

Until then, see our Security, Privacy & Support and Privacy Policy for how the US platform stores and protects data today. We describe our posture as HIPAA-aligned security practices — not independent certification as “HIPAA compliant.”