1 min read

Is Datadog HIPAA compliant? (2025 update)

Is Datadog HIPAA compliant? (2025 update)

Datadog is a monitoring and security platform that provides observability across applications, infrastructure, logs, and security signals.

Is Datadog HIPAA compliant? Yes, Datadog can be HIPAA compliant, but there are limitations.

 

Will Datadog sign a business associate agreement (BAA)?

Yes, Datadog will sign a business associate agreement (BAA) with customers who sign up to transmit protected health information (ePHI) through Datadog’s HIPAA-eligible services. 

 

What does the Datadog BAA cover?

Datadog’s HIPAA compliance documentation states, “Datadog will sign a Business Associate Agreement (BAA) with customers that transmit protected health information (ePHI) through Datadog’s HIPAA-eligible services.”

The Datadog BAA covers:

  • Transmission of ePHI through HIPAA-eligible services
  • Encryption of log submissions on all endpoints
  • Secure handling of log management services under HIPAA requirements
  • HIPAA-aligned security and privacy safeguards

 

What does the Datadog BAA exclude?

Customers signing Datadog’s BAA must comply with specific restrictions:

  • Users cannot request support through Zendesk Live Chat.
  • Users cannot share logs or security signals from the Datadog explorer.
  • Users cannot use third-party powered generative AI services.
  • These exclusions limit certain customer support and AI-powered functionality.

 

Conclusion

Datadog signs a BAA and can be HIPAA compliant when used with its HIPAA-eligible services. However, the agreement imposes restrictions on support channels, log sharing, and AI features, so organizations must carefully review how they intend to use the platform.

Learn more: HIPAA Compliant Email: The Definitive Guide

 

FAQs

What is a business associate agreement?

A business associate agreement (BAA) is a legally binding contract establishing a relationship between a covered entity under the Health Insurance Portability and Accountability Act (HIPAA) and its business associates. The purpose of this agreement is to ensure the proper protection of personal health information (PHI) as required by HIPAA regulations.

 

What is HIPAA?

The Health Insurance Portability and Accountability Act (HIPAA) sets national standards for protecting the privacy and security of certain health information, known as protected health information (PHI).

HIPAA is designed to protect the privacy and security of individuals’ health information and to ensure that healthcare providers and insurers can securely exchange electronic health information. Violations of HIPAA can result in significant fines and penalties for covered entities.

 

Who does HIPAA apply to?

HIPAA applies to covered entities, which include healthcare providers, health plans, and healthcare clearinghouses. It also applies to business associates of these covered entities. These are entities that perform certain functions or activities on behalf of the covered entity.

Subscribe to Paubox Weekly

Every Friday we'll bring you the most important news from Paubox. Our aim is to make you smarter, faster.