Is Square HIPAA compliant? (2025 update)
Square is a payment and business management platform that provides tools for payment processing, point-of-sale (POS) systems, and business analytics.
YouTube is a video-sharing platform that provides tools for uploading, streaming, and monetizing video content.
With YouTube, users can create and share videos, engage with audiences through comments and live streaming, and analyze performance metrics. This helps individuals and businesses expand their reach, grow their brand, and connect with viewers worldwide.
Is YouTube HIPAA compliant? No, based on our research, YouTube may not be HIPAA compliant.
As of April 2026, our review did not identify any publicly disclosed changes to YouTube's HIPAA-related policies or BAA terms.
No, YouTube will not sign a business associate agreement and therefore, is not HIPAA compliant. YouTube does not provide the contractual, technical, or administrative safeguards required to create, receive, maintain, or transmit PHI in a compliant manner.
Healthcare organizations should also be aware that embedding YouTube videos on websites poses additional HIPAA risks. YouTube's advertising and analytics ecosystem collects behavioral data, including IP addresses, device identifiers, and viewing activity. When a patient visits a healthcare website with embedded YouTube content, this tracking data may constitute PHI, and without a BAA, its collection and transfer to Google is a HIPAA violation.
YouTube does not sign a BAA and is, therefore, not HIPAA compliant.
Learn more: HIPAA Compliant Email: The Definitive Guide
A business associate agreement (BAA) is a legally binding contract establishing a relationship between a covered entity under the Health Insurance Portability and Accountability Act (HIPAA) and its business associates. The purpose of this agreement is to ensure the proper protection of personal health information (PHI) as required by HIPAA regulations.
The Health Insurance Portability and Accountability Act (HIPAA) sets national standards for protecting the privacy and security of certain health information, known as protected health information (PHI).
HIPAA is designed to protect the privacy and security of individuals' health information and to ensure that healthcare providers and insurers can securely exchange electronic health information. Violations of HIPAA can result in significant fines and penalties for covered entities.
HIPAA applies to covered entities, which include healthcare providers, health plans, and healthcare clearinghouses. It also applies to business associates of these covered entities. These are entities that perform certain functions or activities on behalf of the covered entity.
Square is a payment and business management platform that provides tools for payment processing, point-of-sale (POS) systems, and business analytics.
Confluence has been around since 2004, created as an enterprise-grade "knowledge management system," similar to a wiki. It's one of many software...
The use of cloud technology has grown exponentially since the early 2000s, especially within the healthcare industry. In fact, global spending on the...
Every Friday we bring you the most important news from Paubox. Our aim is to make you smarter, faster.