Security & Compliance

Inbox Health Certifications and Third-Party Attestations

We’re committed to the highest security and compliance standards in healthcare. Inbox Health engages external certifying bodies to ensure the policies, processes, and controls established and operated by Inbox Health meet or exceed applicable regulatory requirements and industry best practices.

HIPAA Compliant

Inbox Health is compliant with the U.S. Health Insurance Portability and Accountability Act (HIPAA), providing a secure environment to process, maintain, and store protected health information.

PCI Compliant

Inbox Health is compliant with PCI DSS 4.0.1 under the Payment Card Industry (PCI) for the handling of credit card information.

SOC 2

Inbox Health maintains a rigorous SOC 2 Type 2 compliance standard ensuring reliable system availability and robust data integrity, as well as the highest levels of security, confidentiality, and privacy for your sensitive data.

Trust Service Principles

An independent assessment covers five total trust service principles (TSPs): security, availability, processing integrity, confidentiality, and privacy. The assessment is conducted by a cloud-based vendor that hosts independent inspectors, provides them with documentation of controls, and samples and tests their systems.

NIST

Inbox Health is compliant with National Institute of Standards and Technology (NIST) Publication 800-53 Rev 3 (Recommended Security Controls for Federal Information Systems).

Two-Factor Authentication

Inbox Health requires two-factor authentication to provide an extra layer of security. Users must present two credentials (password and a one-time code) to verify identity for login.

Get started with Inbox Health today

Inbox Health was built for medical billers. Click below and schedule a quick chat 
– let’s get to know each other.

schedule a call