Healthcare Compliance Briefing
HIPAA, ONC HTI-1, FDA, and trust center intelligence for enterprise healthcare buyers.
12
curated source records reviewed
11
vendors with material changes
4
high-severity changes
Executive summary
What changed
This edition reviews 12 manually curated public source records across 11 healthcare AI vendors. These records are not machine-detected changes or permanent compliance claims.
4 changes are marked high severity because they affect certifications, regulatory filings, subprocessors, incidents, or material disclosure language.
The most frequently represented framework in this edition is HIPAA. Buyers should review the source evidence and applicability to their own deployment before making a procurement decision.
Key findings
Vendor change register
Observed evidence
Ordered by latest observed date
| Observed | Vendor | Change | Framework | Severity | Source |
|---|---|---|---|---|---|
| Jun 21, 2026 | Abridge | Trust Center Updated | HIPAA | medium | trust.abridge.com |
| Jun 18, 2026 | Suki | HIPAA Policy Updated | HIPAA | medium | privacy policy |
| Jun 9, 2026 | Nuance DAX | FedRAMP Status Updated | FedRAMP | high | Microsoft Trust Center |
| Jun 7, 2026 | DeepScribe | ONC HTI-1 Disclosure Added | ONC HTI-1 | medium | compliance disclosure |
| Jun 5, 2026 | Augmedix | Subprocessor List Changed | HIPAA | high | subprocessor page |
| Jun 3, 2026 | Hippocratic AI | Disclosure Language Changed | HIPAA | high | AI safety disclosure |
| Jun 1, 2026 | Rad AI | Security Documentation Changed | HIPAA | low | security page diff |
| May 30, 2026 | Abridge | Security Documentation Modified | HIPAA | medium | security page diff |
| May 30, 2026 | Infinitus | Call Recording Policy Updated | HIPAA | medium | privacy notice |
| May 19, 2026 | AKASA | Revenue Cycle Data Handling Revised | HIPAA | medium | security page diff |
| May 13, 2026 | Notable | Automation Subprocessor Added | HIPAA | high | subprocessor page |
| May 4, 2026 | Pieces Technologies | Security Page Updated | HIPAA | medium | security page diff |
Regulatory developments
Sources and methodology
GovernAtlas V1 uses a curated local dataset of public vendor pages, trust centers, security documentation, announcements, certification references, and regulatory disclosures. Observations indicate that public language changed; they do not independently certify legal compliance.