Paubox blog: HIPAA compliant email - easy setup, no portals or passcodes

Paubox customers: Paubox Zoom social mixer (October 2025)

Written by Dean Levitt | October 17, 2025

At our October Zoom social mixer, the conversation focused on geofencing, two-factor authentication, and security awareness in the age of Shadow AI.

 

What happened

The October social mixer was an unmoderated discussion among healthcare IT professionals and marketers. We covered geofencing, inactive accounts, two-factor authentication preferences, phishing awareness, and the latest Paubox report on Shadow AI in healthcare.

 

Our takeaways:

  • Several customers mentioned the effectiveness of geofencing.

    • With more inbound messages originating outside the country, attendees suggested adding a whitelist option for trusted exceptions.

  • Participants discussed two-factor authentication methods. Many prefer using an app rather than SMS, especially since hackers can spoof mobile numbers to intercept text-based 2FA.

    • The FCC now recommends not answering calls from unknown numbers as a best practice.

  • Employees trained to spot phishing attempts are showing measurable improvement in reporting and avoiding attacks.

  • The group also discussed the latest Paubox Shadow AI report.

    • The findings showed 95% of organizations have staff already using AI tools in email, yet 84% haven’t trained employees with PHI access on safe AI usage.

    • Only 42% have a signed BAA covering any AI assistant used in email

  • Right-Hand was floated as an alternative to KnowBe4 for phishing training. 

The bottom line: Customers count on Paubox to help keep their emails HIPAA compliant and save time managing inbound email security challenges.

See alsoOur playbook for Zoom social mixers

See also: HIPAA Compliant Email: The Definitive Guide