Question on HIPAA or PIPEDA Compliance
Hello, would like to clarify whether you comply HIPAA (US standard) or PIPEDA (Canadian standard) ? This information will be very useful for us on considering using your tool. Thank you
Comments
-
Hello!
Unfortunately, we are currently not HIPAA or PIPEDA compliant. We do have SOC2 and SOC3 certifications and are fully GDPR compliant.
For more information, you can check our terms of service, and privacy policy or download additional resources under "Resources" and "Certificates" here: https://www.pipedrive.com/en/features/privacy-security0 -
We are in compliance with the US and specifically for The State of Texas.
0 -
We are in compliance with the industry specific and not applicable to the whole international industry.
0 -
Please also know that in British Columbia, Canada, there are restrictions that impose even more stringent requirements than PIPEDA...
0 -
I don't understand where this question came from. I'm from the US and work selling medical products. As a CRM, I don't see why Pipedrive would have to be HIPAA compliant. It's not marketed as a patient portal or anything to do with medical histories as far as I'm concerned. Unless you were trying to use it specifically for campaigns to market to your patients. In which case I would recommend straight mailchimp or similar service to add a widget to your website and add the required language for opting in. On the other end I would suggest having the employee who manages the marketing sign something ensuring compliance (ie not adding people on facebook they see come in as patients). Hope this helps!
1 -
Kreete K said:
Hello!
Unfortunately, we are currently not HIPAA or PIPEDA compliant. We do have SOC2 and SOC3 certifications and are fully GDPR compliant.
For more information, you can check our terms of service, and privacy policy or download additional resources under "Resources" and "Certificates" here: https://www.pipedrive.com/en/features/privacy-securityThanks Kreete,
Can you explain what criteria you are not meeting that you would need to in order to be hipaa compliant?
1