News
Amazon's One Medical Seniors Hit by ShinyHunters Extortion Group: 8.8TB of Legacy Patient Data at Risk · Data BreachOpenLoop Health Telehealth Infrastructure Vendor Breach Exposes Patient Data Across Multiple Digital Health Clients · Data BreachHealthcare AI Vendor Xsolis Breach Exposes 1.4 Million Records Across Seven Hospital Systems Including Mayo Clinic · Data BreachHHS Breach Portal Backlog: OCR Still Adding March 2026 Breaches in Late June — What the Delay Means for Compliance Teams · AnalysisKettering Health Refused to Pay the Ransom. The Data Leaked Anyway: What 1.7 Million Exposed Records Teach About Ransomware and HIPAA · Data BreachOCR Settles Ransomware Investigation with Employer-Sponsored Health Plan for $450,000 · OCR EnforcementWhy a Third of Healthcare Breaches Now Trace Back to a Vendor: A Mid-Year 2026 Analysis · AnalysisFrom 4 Million to 60+ Million: The Conduent Breach Shows How Far Third-Party Risk Reaches · Data BreachNYC Health + Hospitals Breach: 1.8 Million Records Exposed via Third-Party Vendor, Including Biometric Data · Data BreachWhen Your Vendor Is the Breach: Millions of Patient Records Just Hit the HHS Tracker, and the Common Thread Is Third-Party Risk · Data BreachDo I Need a BAA With My Vendor? A Plain-English Guide to Which Vendors Require a Business Associate Agreement · Business AssociatesAmazon's One Medical Seniors Hit by ShinyHunters Extortion Group: 8.8TB of Legacy Patient Data at Risk · Data BreachOpenLoop Health Telehealth Infrastructure Vendor Breach Exposes Patient Data Across Multiple Digital Health Clients · Data BreachHealthcare AI Vendor Xsolis Breach Exposes 1.4 Million Records Across Seven Hospital Systems Including Mayo Clinic · Data BreachHHS Breach Portal Backlog: OCR Still Adding March 2026 Breaches in Late June — What the Delay Means for Compliance Teams · AnalysisKettering Health Refused to Pay the Ransom. The Data Leaked Anyway: What 1.7 Million Exposed Records Teach About Ransomware and HIPAA · Data BreachOCR Settles Ransomware Investigation with Employer-Sponsored Health Plan for $450,000 · OCR EnforcementWhy a Third of Healthcare Breaches Now Trace Back to a Vendor: A Mid-Year 2026 Analysis · AnalysisFrom 4 Million to 60+ Million: The Conduent Breach Shows How Far Third-Party Risk Reaches · Data BreachNYC Health + Hospitals Breach: 1.8 Million Records Exposed via Third-Party Vendor, Including Biometric Data · Data BreachWhen Your Vendor Is the Breach: Millions of Patient Records Just Hit the HHS Tracker, and the Common Thread Is Third-Party Risk · Data BreachDo I Need a BAA With My Vendor? A Plain-English Guide to Which Vendors Require a Business Associate Agreement · Business Associates
Last updated May 6, 2026

Terms of Service

These terms govern access to and use of medcomply.ai, including our compliance insights content, tools, and training.

SECTION 1, AGREEMENT TO TERMS

These Terms of Service ("Terms") govern your access to and use of medcomply.ai (the "Site") and the related products and services we make available (collectively, the "Services").

medcomply.ai is operated by medcomply.ai, a New Jersey limited liability company ("Company," "we," "us," or "our"). By accessing or using the Services, you agree to these Terms. If you do not agree, do not use the Services.

SECTION 2, THE SERVICES

medcomply.ai provides a HIPAA compliance insights platform, including educational content, enforcement tracking, compliance tools, and training features.

We may modify, suspend, or discontinue any part of the Services at any time. We may also introduce features that are subject to additional terms, which will be provided at the time you use those features.

SECTION 3, ACCOUNTS AND SECURITY

Some features require an account. You agree to provide accurate information and to keep your account information up to date.

You are responsible for safeguarding your login credentials and for all activity that occurs under your account. If you believe your account has been compromised, contact hello@medcomply.ai.

SECTION 4, ACCEPTABLE USE

You agree not to misuse the Services. In particular, you will not (and will not attempt to):

Access or probe our systems in a way that could harm, disable, overburden, or impair them; interfere with other users; bypass or attempt to bypass security or access controls; or introduce malware.

Use the Services to violate applicable law; infringe intellectual property rights; or submit unlawful, defamatory, or abusive content.

Scrape, harvest, or collect information from the Services at scale except as explicitly permitted in writing.

SECTION 5, SUBSCRIPTIONS AND PAYMENTS

Certain features may require a paid subscription. Prices, billing cadence, and included features are described on our pricing pages or in-product.

Payments are processed by Stripe. We do not store full payment card numbers. By purchasing a subscription, you authorize us (through Stripe) to charge the applicable fees.

Unless otherwise stated, subscriptions renew automatically until cancelled. You can manage billing in your account dashboard or by contacting hello@medcomply.ai.

SECTION 6, INTELLECTUAL PROPERTY

The Services and all related content, software, and materials are owned by the Company or its licensors and are protected by intellectual property laws. You receive a limited, non-exclusive, non-transferable license to access and use the Services for your internal business purposes, subject to these Terms.

You may not copy, modify, distribute, sell, or lease any part of the Services unless we provide written permission.

SECTION 7, HIPAA AND NO PHI

medcomply.ai is a HIPAA compliance guidance platform. The Services are not designed for storage, processing, or transmission of Protected Health Information (PHI).

Do not submit patient-identifying information or other PHI through the Services, including through any AI assistant features, freeform text boxes, uploads, or support communications. If you believe your use case may involve PHI, contact hello@medcomply.ai before proceeding.

The Company is not acting as your business associate and does not provide a Business Associate Agreement (BAA) by default.

SECTION 8, DISCLAIMERS

The Services are provided on an "as is" and "as available" basis. We make no warranties of any kind, express or implied, including warranties of merchantability, fitness for a particular purpose, and non-infringement.

The Services provide informational content and tools and do not constitute legal advice. You are responsible for evaluating your compliance obligations and consulting qualified counsel as needed.

SECTION 9, LIMITATION OF LIABILITY

To the maximum extent permitted by law, the Company will not be liable for indirect, incidental, special, consequential, or punitive damages, or any loss of profits, revenues, data, or goodwill, arising from or related to your use of the Services.

To the maximum extent permitted by law, the Company's total liability for any claim arising out of or relating to the Services will not exceed the amount you paid to the Company for the Services during the twelve (12) months prior to the event giving rise to the claim.

SECTION 10, INDEMNIFICATION

You agree to indemnify and hold harmless the Company and its affiliates, officers, directors, employees, and agents from and against any claims, liabilities, damages, losses, and expenses (including reasonable attorneys' fees) arising out of or related to your use of the Services or your violation of these Terms.

SECTION 11, TERMINATION

You may stop using the Services at any time. We may suspend or terminate your access to the Services if we reasonably believe you have violated these Terms or if necessary to protect the Services, other users, or the Company.

Upon termination, your right to use the Services will cease. Sections that by their nature should survive termination will survive, including intellectual property, disclaimers, limitations of liability, and indemnification.

SECTION 12, GOVERNING LAW

These Terms are governed by the laws of the State of New Jersey, without regard to conflict of laws principles.

SECTION 13, CHANGES

We may update these Terms from time to time. We will update the "Last updated" date at the top of this page when changes take effect. Your continued use of the Services after changes become effective means you accept the updated Terms.

Questions?

Contact us at hello@medcomply.ai. If you prefer, you can also reach us via our contact page.