Health Care Blog November 13, 2025
Jacob: I recently needed to sign a Business Associate Agreement (BAA) with one of the large hosting providers for a new health IT project. What should have been straightforward turned into a multi-week educational exercise about basic HIPAA compliance. And when I say “basic,” I mean really basic, like the definitions in the statute itself.
Here’s what happened and why you need to watch out for this if you’re building health care technology.
I’m building a system that automates clinical data extraction for research studies. Like any responsible health care tech company, I need HIPAA-compliant infrastructure. The company (I’ll call them Hosting Company or HC) is good technically, and they’re hosting our development environment, so I signed up for their...







