ACAI
ProductEvidenceDocsPricing
ACAI

Continuous compliance for AI. Every call scanned, classified, audit-logged, and evidence-ready.

Product

  • AI Layer
  • Sample Reports
  • Pricing
  • Documentation
  • Quickstart
  • Start Free

Company

  • About
  • Talk to an Engineer
  • Security
  • Support

Legal

  • Privacy Policy
  • Terms of Service
Service-Disabled Veteran-Owned Small Business
© 2026 Agile Cloud & AI LLC. All rights reserved.
HIPAA Compliance

AI compliance for healthcare — without the infrastructure project

ACAI maps every API request to HIPAA §164.312 technical safeguards. PHI is detected and redacted before it reaches the model, every access is logged, and you get auditor-ready evidence covering access control, audit trails, integrity, and transmission security.

Built for healthcare companies, covered entities, and business associates.

See Sample ReportsStart Free — No Credit Card

HIPAA Controls ACAI Covers

Every API request generates evidence mapped to these controls automatically.

§164.312(a)(1)

Access Control

Bearer token authentication on every request. Per-key data classification floors. Tier-gated model access.

§164.312(b)

Audit Controls

Tamper-proof dual-sink logging (PostgreSQL + immutable Blob). Correlation IDs. Configurable retention up to unlimited.

§164.312(c)(1)

Integrity — PHI Protection

14+ regex patterns + Azure AI NER scan every request for PHI before it reaches the model. Three modes: detect, redact-from-logs, redact-all.

§164.312(d)

Person or Entity Authentication

API keys scoped per user. SHA-256 hashed storage. Entra ID SSO for dashboard access.

§164.312(e)(1)

Transmission Security

TLS 1.2+ enforced on all endpoints. No plaintext API keys in transit. Azure Key Vault for secrets.

What You Get

BAA Chain

ACAI signs a BAA with you. Azure's BAA covers infrastructure. One link in the chain you don't have to build.

PHI Routing Controls

Block passthrough backends for PHI workloads. Force PHI-only backends. Data classification enforcement per key.

Evidence Export

One-click HIPAA evidence report mapping your API usage to §164.312 controls. Hand it to your auditor.

Download Sample HIPAA Evidence Pack

Ready to ship HIPAA-compliant AI?

One API key. One BAA. HIPAA evidence your auditor will accept.

Start Free — No Credit CardSee Pricing
Download Sample HIPAA Evidence Pack