← Back to Legal

    HIPAA Compliance

    Upscope maintains strict HIPAA compliance to protect sensitive healthcare information and ensure secure communication for healthcare organizations.

    Secure Data Centers

    Located in AWS datacenters with option to limit to US locations only

    Minimal Data Exposure

    Data transmitted only during active screen sharing sessions

    Element Hiding

    Hide sensitive page elements like SSN or credit card information

    SSL Encryption

    All data transmission enforced with SSL encryption

    Immutable Audit Logs

    Every team action logged with hash to prevent tampering

    Role-Based Access

    Granular access controls for different team members

    Business Associate Agreements (BAAs)

    We provide signed Business Associate Agreements for all healthcare organizations. Our BAAs ensure compliance with HIPAA requirements and establish clear responsibilities for protecting patient health information.

    Request BAA

    Healthcare-Focused Security

    • Agents only see the specific browser tab of your website - no access to other desktop folders or third-party tabs
    • Remote control limited to browser with no software installation required
    • Can hide specific form fields to protect sensitive patient information
    • Stores minimal metadata about users with automatic deletion after 30 days of inactivity
    • Granular control over what user data is shared during sessions

    Additional Certifications

    SOC2 Type II Certified
    ISO 27001 Certified
    GDPR Compliant

    Contact Compliance Team

    Questions about HIPAA compliance?

    Email: team@upscope.com

    Phone: 646 814 5660

    Protected Health Information (PHI) Handling

    Upscope is designed to minimize PHI exposure. We only transmit data during active sessions, provide tools to hide sensitive information, and maintain comprehensive audit trails. Our infrastructure and policies are regularly reviewed to ensure ongoing HIPAA compliance.