Hacker News new | ask | show | jobs
by laurenstill 4346 days ago
Thanks for having a bug bounty program, far too infrequent in healthIT.

Can you expand more on "generate all of the documentation, audit logs, and explanatory materials you need to demonstrate compliance with every aspect of HIPAA."?

Also, with QSM requirements for the vast majority of other healthcare regulations, you need to explicitly address them in documentation to be compliant. Does Aptible address this, or only HIPAA?

3 comments

Aptible engineer here.

Re: documentation, a major part of our platform is our compliance dashboard, where we track your compliance status in real time, as both a high-level status report (think Travis CI for HIPAA), and as more formal (custom) documentation which you can use for sales purposes, or in case of an audit.

As for QSM requirements (and other regulatory/compliance requirements in general), we're focused on covering 100% of HIPAA's requirements, but our technology and our compliance backend support a wide array of frameworks. We can help customers with all of these specific needs. Please let me know if I can provide a more specific answer!

Thanks, we're finalizing how researchers will get access right now. The program should be up and paying rewards in a few days.

We're focused on HIPAA only right now, but are built to support other frameworks and reporting standards.

It looks like the bounty board is down: https://bugcrowd.com/aptible