HIPAAmart

Industry Guides

Compliance mapped to your context.

The rules are the same, but the operational reality changes by industry.

Reviewed August 2026

Available guidance

  • HIPAA for Hospitals

    A systems view of privacy, security, continuity, workforce, and vendor risk in complex care environments.

  • HIPAA for Physician Practices

    Right-sized HIPAA guidance for practices balancing patient rights, workforce access, billing, and technology vendors.

  • HIPAA for Dental Practices

    Practical privacy and security considerations for dental records, imaging, scheduling, billing, and vendors.

  • HIPAA for Pharmacies

    A focused starting point for dispensing, counseling, payment, delivery, workforce, and third-party pharmacy workflows.

  • HIPAA for Laboratories

    Guidance for specimen, result, interface, referral, and vendor data flows in laboratory environments.

  • HIPAA for Behavioral Health

    A careful starting point for sensitive records, patient rights, workforce access, and layered legal analysis.

  • HIPAA for Telehealth

    Evaluate telehealth platforms, devices, communications, vendors, and patient workflows without assuming a platform label settles the question.

  • HIPAA for Healthcare SaaS

    A product and operations framework for SaaS providers that may create, receive, maintain, or transmit PHI.

  • HIPAA for Healthcare Startups

    A practical foundation for startups deciding scope, roles, vendors, evidence, and security before growth makes changes expensive.

  • HIPAA for Medical Billing

    Connect minimum necessary access, claims workflows, vendors, workforce training, and incident response in billing operations.

  • HIPAA for Cloud Providers

    What cloud providers and customers should clarify about services, shared responsibility, contracts, and evidence.

  • HIPAA for AI Companies

    A governance and product-risk starting point for AI companies that may process PHI in models, prompts, outputs, or telemetry.