What problem does it solve? Navigating HIPAA's Privacy, Security, and Breach Notification Rules is complex and error-prone, whether you are a developer building healthcare software, a compliance officer reviewing policies, or an organization drafting required documents like BAAs and Notices of Privacy Practices. ## Core Features & Use Cases - Compliance Review: Analyze documents, workflows, or system architectures against HIPAA rules with structured findings citing specific CFR sections and risk levels. - Template & Policy Generation: Draft Notices of Privacy Practices, Business Associate Agreements, authorization forms, breach response plans, and risk assessment templates with regulatory citations. - Technical Safeguards Guidance: Advise developers on encryption, access controls, audit logging, and cloud architecture (AWS, Azure, GCP) requirements for ePHI. - Use Case: A startup building a telehealth app asks whether their architecture is HIPAA compliant; the skill produces a safeguard checklist mapped to 45 CFR §164.312 and flags missing BAAs with cloud vendors. ## Quick Start Ask the assistant to review your healthcare system's data handling practices for HIPAA compliance and list any gaps with remediation steps.