Datadog is a monitoring and security platform that provides observability across applications, infrastructure, logs, and security signals.
Is Datadog HIPAA compliant? Yes, Datadog can be HIPAA compliant, but there are limitations.
Yes, Datadog will sign a business associate agreement (BAA) with customers who sign up to transmit protected health information (ePHI) through Datadog’s HIPAA-eligible services.
Datadog’s HIPAA compliance documentation states, “Datadog will sign a Business Associate Agreement (BAA) with customers that transmit protected health information (ePHI) through Datadog’s HIPAA-eligible services.”
The Datadog BAA covers:
Customers signing Datadog’s BAA must comply with specific restrictions:
Datadog signs a BAA and can be HIPAA compliant when used with its HIPAA-eligible services. However, the agreement imposes restrictions on support channels, log sharing, and AI features, so organizations must carefully review how they intend to use the platform.
Learn more: HIPAA Compliant Email: The Definitive Guide
A business associate agreement (BAA) is a legally binding contract establishing a relationship between a covered entity under the Health Insurance Portability and Accountability Act (HIPAA) and its business associates. The purpose of this agreement is to ensure the proper protection of personal health information (PHI) as required by HIPAA regulations.
The Health Insurance Portability and Accountability Act (HIPAA) sets national standards for protecting the privacy and security of certain health information, known as protected health information (PHI).
HIPAA is designed to protect the privacy and security of individuals’ health information and to ensure that healthcare providers and insurers can securely exchange electronic health information. Violations of HIPAA can result in significant fines and penalties for covered entities.
HIPAA applies to covered entities, which include healthcare providers, health plans, and healthcare clearinghouses. It also applies to business associates of these covered entities. These are entities that perform certain functions or activities on behalf of the covered entity.