Our HIPAA-compliant infrastructure (multi-factor authentication (MFA), role-based access controls, audit logs, visibility controls, and volunteer consent logging) is universally accessible and equally applied to every organization on the Studies Platform.
Trust & Compliance
HIPAA and Your Business Associate Agreement
Organization Admins can review and accept a Business Associate Agreement from organization settings.
Organization Admins can review and accept a Business Associate Agreement (BAA) from organization settings.
Only Organization Admins can view or accept it, the same access gate used for the Team settings page,
since acceptance is binding on the entire organization rather than an individual user’s account.
If your organization is a covered entity or business associate under HIPAA and is handling protected health information (PHI) through the platform, a signed BAA must be on file. Otherwise, your organization should not input any PII or PHI. The BAA defines how PHI is used, disclosed, and safeguarded, and what each party is responsible for. Jaspari ensures its own technologies and processes are aligned with HIPAA standards regardless of your BAA status, but it remains the covered entity’s or business associate’s responsibility to take proper safeguards to protect volunteer data that does not originate from our platform.
Related topics
Setup and LaunchPlatform RepresentativeBilling CyclesInviting Team MembersLaunch Your First Study