hipaa-review

Assess healthcare organizations' compliance with HIPAA Security Rule requirements.

Updated Apr 19, 2026
One-click install
npx skills add https://github.com/do360now/security-agents --skill hipaa-review
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: hipaa-review
Source: https://github.com/do360now/security-agents/tree/main/.claude/skills/hipaa-review
Command: npx skills add https://github.com/do360now/security-agents --skill hipaa-review

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill simplifies the complex process of performing HIPAA Security Rule compliance reviews by providing structured guidance and analysis tools.

Core Features & Use Cases

  • Compliance Assessment: Evaluate an organization's adherence to HIPAA Security standards across administrative, physical, and technical safeguards.
  • Risk Identification: Identify gaps in risk analysis, BAAs, and breach procedures relevant to healthcare data security.
  • Use Case: A hospital's security team uses this Skill to prepare for OCR audits, ensuring all safeguards are in place and documented before the official review.

Quick Start

Use the hipaa-review skill to analyze your organization's HIPAA security posture and generate a detailed compliance report.

Frequently Asked Questions about hipaa-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I assess my organization's HIPAA Security Rule compliance?

You can assess HIPAA Security Rule compliance by evaluating your organization's policies, risk management procedures, and safeguards protecting electronic protected health information against CFR standards to identify compliance gaps.

What is included in a healthcare data security risk analysis for OCR audits?

A healthcare data security risk analysis for OCR audits evaluates administrative, physical, and technical safeguards, identifies gaps in breach response plans, and reviews Business Associate Agreements to ensure documented adherence to HIPAA standards.

Can I use this to review business associate agreements for healthcare data privacy?

Yes, you can review business associate agreements as part of a comprehensive healthcare data privacy evaluation to identify risk management gaps and ensure compliance with HIPAA Security Rule requirements for managing electronic protected health information.

Does this compliance review cover physical and technical safeguards for ePHI?

Yes, this compliance review covers physical and technical safeguards for ePHI by evaluating organizational policies, risk management controls, and breach response plans against HIPAA Security Rule standards to ensure full regulatory adherence.

How do I identify gaps in my HIPAA breach response procedures?

To identify gaps in HIPAA breach response procedures, evaluate your existing security documentation, analyze your risk management policies, and compare your safeguards against CFR standards for handling electronic protected health information.

Do I need external dependencies to perform a healthcare security risk analysis?

No, you do not need external dependencies to perform a healthcare security risk analysis; the process evaluates your existing security documentation and policy controls to generate a detailed HIPAA compliance report.