Theryo
Sign InStart Free Trial
Healthcare Compliance

HIPAA Information

Understanding how Theryo protects your health information with enterprise-grade security.

Our Commitment to Security

HIPAA-Aligned Architecture

Our platform is designed to meet the requirements of HIPAA regulations for protected health information.

Encryption

All data is encrypted in transit using TLS and at rest using AES-256 encryption.

Business Associate Agreements

We provide BAAs to covered entities and maintain BAAs with our subcontractors.

Audit Controls

Comprehensive logging and monitoring of all access to protected health information.

What is HIPAA?

The Health Insurance Portability and Accountability Act (HIPAA) establishes national standards for protecting sensitive patient health information. When mental health providers use digital tools, those tools must meet HIPAA requirements.

Our Approach

Theryo's HIPAA-Aligned Architecture

Theryo has been designed with HIPAA compliance in mind from the ground up. Our comprehensive approach includes:

Technical Safeguards

  • End-to-end encryption for data in transit
  • AES-256 encryption for data at rest
  • Unique user identification and authentication
  • Automatic logoff after inactivity
  • Audit controls and activity logging

Administrative Safeguards

  • Designated security officer
  • Workforce training on security procedures
  • Incident response procedures
  • Regular risk assessments
  • Business associate agreements with all vendors

Physical Safeguards

  • Secure, SOC 2 compliant data centers
  • Access controls for facilities
  • Workstation security policies

Business Associate Agreements

Theryo provides Business Associate Agreements (BAAs) to covered entities (healthcare providers) who use our platform. A BAA establishes the permitted uses and disclosures of protected health information (PHI) and requires Theryo to implement appropriate safeguards.

To request a BAA, please contact: compliance@theryo.ai

Your Rights

Under HIPAA, you have the right to:

  • Access your health information
  • Request corrections to your records
  • Receive an accounting of disclosures
  • Request restrictions on uses of your information
  • File a complaint if you believe your rights have been violated

Data Breach Notification

In the unlikely event of a data breach affecting your protected health information, Theryo will notify affected individuals and relevant authorities in accordance with HIPAA breach notification requirements.

Questions?

If you have questions about our HIPAA practices or want to report a concern, please contact our compliance team at: compliance@theryo.ai

Need a BAA or have compliance questions?

Our compliance team is ready to help you get started with HIPAA-aligned mental health technology.