Answers · CMMC & AI compliance
Is ChatGPT HIPAA compliant?
No — ChatGPT is not HIPAA-compliant by default. The consumer and Plus versions offer no Business Associate Agreement (BAA), so entering protected health information (PHI) discloses it to a vendor with no HIPAA obligations — a potential reportable breach. OpenAI supports BAAs only for its API and enterprise offerings, and even then organizations must add safeguards like minimum-necessary limits, access controls, and audit trails. Most healthcare teams get compliant by blocking PHI locally before prompts leave their network.
Why consumer ChatGPT fails HIPAA
HIPAA requires a Business Associate Agreement before any third party creates, receives, maintains, or transmits PHI on a covered entity's behalf. Consumer ChatGPT has no BAA, and its terms do not contemplate PHI at all. The moment a nurse pastes a patient chart in to summarize it, PHI has been disclosed to OpenAI with no HIPAA protections attached.
This is not a fringe behavior problem. Netskope's May 2025 analysis found 81% of data policy violations in healthcare organizations involved regulated data — and generative AI prompts are one of the fastest-growing channels for it.
The paths to compliant AI use
- BAA-covered pathway: use OpenAI's API or enterprise offerings under a signed BAA, with minimum-necessary discipline, access controls, and audit logging layered on. A BAA is necessary but not sufficient.
- Block-PHI-locally pathway: keep staff on the AI tools they already use, but route traffic through a firewall running on your own infrastructure that scans each prompt for PHI markers and blocks matches before they leave the network.
- Most clinics combine both: a BAA-covered pathway for sanctioned workflows, and local blocking as the safety net for everything else.
Why cloud DLP tools don't solve this
A DLP product that scans your prompts in the vendor's cloud has to receive your PHI in order to protect it — which puts you back in BAA territory with the DLP vendor itself. Local scanning avoids the recursion: HoundShield's self-hosted deployment inspects prompts in under 10ms on your own infrastructure, so PHI never leaves your boundary to be checked.
Frequently asked questions
Use AI without leaking CUI
HoundShield scans every AI prompt locally and blocks CUI before it leaves your network. One URL change. Under 10 minutes. C3PAO-ready.