1 min read

Is YouCanBookMe HIPAA compliant? (2026 update)

YouCanBookMe logo

YouCanBookMe is an online scheduling tool that lets businesses create booking pages, connect calendars, automate reminders, and manage appointment workflows. The company says the product handles availability, reminders, time zones, and payments, and it markets the service across multiple industries, including healthcare and medical.

Is YouCanBookMe HIPAA compliant? Based on our research, YouCanBookMe is not HIPAA compliant. Its own help center says it is not able to claim HIPAA compliance.

 

What changed this year?

As of March 2026, our review did not identify any publicly disclosed changes to YouCanBookMe’s HIPAA-related position or any public BAA terms. The company’s current privacy notice still references a Data Processing Addendum for privacy compliance, while its HIPAA help article still states that it cannot claim HIPAA compliance.

 

Will YouCanBookMe sign a business associate agreement (BAA)?

No, YouCanBookMe does not publicly offer a business associate agreement.

 

Conclusion

YouCanBookMe does not publicly offer a BAA and says it is not able to claim HIPAA compliance. As a result, it should not be used to store or manage PHI in a HIPAA-regulated workflow.

Learn more: HIPAA Compliant Email: The Definitive Guide

 

FAQs

What is a business associate agreement?

A BAA is a written contract between a covered entity and a business associate that sets the permitted uses and disclosures of PHI and requires safeguards for that information. HHS explains that HIPAA generally requires these contracts when a vendor handles PHI on behalf of a covered entity.

 

What is HIPAA?

HIPAA is the federal law that sets national standards for protecting certain health information. HHS explains that the HIPAA Rules govern how protected health information is used, disclosed, and safeguarded.

 

Who does HIPAA apply to?

HIPAA applies to covered entities such as health plans, healthcare clearinghouses, and certain healthcare providers, and it also applies to business associates that perform functions involving PHI on their behalf.

Presenter discussing the HITRUST Approach framework at a conference

HITRUST community extension program (CEP) in Tampa

Mike Parisi (HITRUST) We flew in from San Francisco for a HITRUST Community Extension Program today in Tampa, Florida. It was sponsored by 360...

Read More
Judge's gavel on a wooden block

HHS issues guidance on HIPAA and ERPOs

The Department of Health and Human Services (HHS) through its Office of Civil Rights (OCR) released new guidance regarding how HIPAA compliant...

Read More
iPhone home screen displaying various social media and communication apps

1 min read

Social media & HIPAA compliance: The ultimate guide

As more people flock to the internet to share their lives, social media sites are growing in popularity and in users. Naturally, many businesses,...

Read More

Subscribe to Paubox Weekly

Every Friday we bring you the most important news from Paubox. Our aim is to make you smarter, faster.