News
Aesto Health AWS Breach Hits HHS Portal at 9.54 Million Patients Across 30 Provider Clients, Including Everside Health · Data BreachTheGentlemen Ransomware Group Threatens Nutex Health's 27-Hospital Network; Class Action Filed Days After SEC Disclosure · Data BreachOCR Settles with California Eye Care Provider Azul Vision for Failure to Provide Timely Patient Record Access — 55th Right of Access Enforcement Action · OCR EnforcementShinyHunters Claims Leak of 7.1 Million Baxter International Salesforce Records Including Patient PII · Data BreachCareCloud EHR Vendor Breach Exposes Medical and Financial Data of 345,000 Patients · Data BreachOptalis Management Solutions and Other HIPAA-Regulated Entities Disclose Patient Data Breaches Affecting Thousands · Data BreachFive Small Healthcare Organizations Disclose Patient Data Breaches: Family Medical Associates of Raleigh, Arkansas Oral & Maxillofacial Surgeons, Alpine Agency of the Midlands, Princeton Family Eye Care, and Others · Data BreachAesto Health AWS Breach Hits HHS Portal at 9.54 Million Patients Across 30 Provider Clients, Including Everside Health · Data BreachTheGentlemen Ransomware Group Threatens Nutex Health's 27-Hospital Network; Class Action Filed Days After SEC Disclosure · Data BreachOCR Settles with California Eye Care Provider Azul Vision for Failure to Provide Timely Patient Record Access — 55th Right of Access Enforcement Action · OCR EnforcementShinyHunters Claims Leak of 7.1 Million Baxter International Salesforce Records Including Patient PII · Data BreachCareCloud EHR Vendor Breach Exposes Medical and Financial Data of 345,000 Patients · Data BreachOptalis Management Solutions and Other HIPAA-Regulated Entities Disclose Patient Data Breaches Affecting Thousands · Data BreachFive Small Healthcare Organizations Disclose Patient Data Breaches: Family Medical Associates of Raleigh, Arkansas Oral & Maxillofacial Surgeons, Alpine Agency of the Midlands, Princeton Family Eye Care, and Others · Data Breach

Legal

HIPAA Verified badge usage policy

Last updated April 2026.

1. What the badge represents

The HIPAA Verified badge indicates that an organization maintains an active medcomply.ai subscription and has met the program requirements in effect at the time of issuance (including risk assessment and BAA milestones described in-product).

2. What the badge does not represent

The badge is not a government certification, accreditation, or guarantee of full HIPAA compliance. It does not replace legal counsel, audits, or your own compliance program.

3. Permitted uses

  • Website footer or trust sections, linked to your verification URL
  • Proposals, RFPs, and security packets with accurate context
  • Email signatures using the official embed or image URL we provide

4. Prohibited uses

  • Implying government approval, OCR endorsement, or legal certification
  • Altering badge artwork, colors, or proportions in a way that misrepresents the program
  • Displaying the badge after your medcomply.ai subscription has lapsed or the badge is inactive
  • Claiming broader compliance scope than the badge describes

5. Revocation

medcomply.ai may mark badges inactive when a subscription ends, the badge expires, or for misuse. You must remove public use of the badge promptly when it is inactive.

6. Disclaimer

medcomply.ai is not a law firm. Nothing on this site or in the badge program constitutes legal advice.

7. Contact

Questions: hello@medcomply.ai.

← Back to badge overview