Security

Built for
healthcare.

HIPAA-compliant infrastructure, SOC 2 Type II, AES-256 encryption, and a Business Associate Agreement included with every plan — no extra paperwork required.

HIPAA Compliant
BAA included with every plan
AES-256 Encryption
At rest and TLS 1.2+ in transit
SOC 2 Type II
Annual third-party audit
90-Day Retention
Configurable shorter periods
How we protect you

Six pillars of
security.

Encryption Everywhere

All data is encrypted at rest using AES-256 and in transit using TLS 1.2 or higher. No plaintext PHI is ever stored or transmitted.

Access Controls

Role-based access and least-privilege principles ensure only authorized personnel and systems can access patient data.

HIPAA & BAA

Every Praxis AI customer signs a Business Associate Agreement. Our infrastructure is purpose-built to meet HIPAA Security Rule requirements.

Penetration Testing

Annual third-party penetration tests and quarterly vulnerability scans identify and remediate security issues before they can be exploited.

Uptime & Reliability

99.9% uptime SLA backed by redundant infrastructure across multiple availability zones. Status and incident history available at status.itspraxis.ai.

Audit Logging

Comprehensive audit logs capture all access to patient data and system events, supporting compliance reviews and incident response.

Business Associate Agreement

BAA included.
Always.

Unlike many SaaS vendors who charge extra or require legal review to get a BAA signed, Praxis AI includes a Business Associate Agreement with every plan at no additional cost.

Our BAA covers all three products — Voice Agent, SEO Agent, and Smile Simulator — under a single agreement.

View BAA details Get started
  • Signed automatically when you activate your account
  • Covers all Praxis AI products under one agreement
  • No legal review or negotiation required
  • Updated automatically when regulations change
  • Copies available for your compliance records on request
  • Subprocessor list maintained and available on request
Questions?

Talk to our
security team.

Have specific compliance requirements or questions about our infrastructure? We're happy to get on a call.

Book a demo →