HIPAA Compliance
Summary. We protect health information with HIPAA-aligned safeguards.
What is HIPAA?
HIPAA is a U.S. law that sets privacy and security requirements for Protected Health Information (PHI) handled by covered entities and their business associates.
How HIPAA applies to Biomesight
- Role: Not a covered entity. We act as a Business Associate only when providing services to a U.S. covered entity under a signed BAA; otherwise we apply HIPAA-aligned safeguards voluntarily.
- PHI we may handle: names/contact details linked to kit IDs and test results; data you add in your account.
- We maintain BAAs with applicable U.S. vendors that handle PHI
Safeguards
- Administrative: policies, training, role-based access, least privilege, vendor due diligence.
- Technical: TLS in transit, encryption at rest, MFA (for certain roles/scopes), audit logs, IP-restricted admin access, backups.
- Physical: restricted data center access; secured offices/devices.
Your options
- Access or request a copy of your records.
- Request corrections.
Contact
Email: support@biomesight.com
Postal: PeerQuity Ltd t/a Biomesight, 128 City Road, London, EC1V 2NX, United Kingdom
This page is informational and not legal advice.
Last updated: 13 August 2025