Is BastionGPT HIPAA Compliant?
Yes, and its BAA posture is better than most tools in this directory. What it covers is one user. What it does not cover is your organization.
The Verdict: Is BastionGPT HIPAA Compliant?
Is BastionGPT HIPAA compliant? Yes. Its own documentation states that all of its plans automatically incorporate a BAA, with no enterprise gate and no request process.
That is a cleaner BAA posture than most tools in this directory. Its HITRUST and SOC 2 claims cover inherited infrastructure; BastionGPT's own certifications are in progress.
Verified against BastionGPT's own security documentation, 2026-08-05.
| BAA | Yes, automatic on all paid plans. No enterprise-tier gate, no request process. Their words: "All of our plans automatically incorporate a BAA." |
| Trains on your data | No. "Data entered into BastionGPT is never sold or used for training AI models." |
| Regulatory scope | "Engineered to support the requirements of both HIPAA and 42 CFR Part 2." The Part 2 support for substance use disorder records is uncommon in this category and worth noting if that is your workload. |
| Certifications | HITRUST CSF Certified infrastructure and SOC 2 Type II attested infrastructure, with its own certification and attestation described as in progress. Also NIST CSF and NIST 800-53 framework assessments, plus annual third-party penetration testing. |
| Data residency | US billing addresses store and process in the USA; Canada and Australia default to their respective countries. |
| Underlying models | Not disclosed in the documentation reviewed. |
| Sources | bastiongpt.com security documentation. Read directly, publicly accessible. |
This is not legal advice, and your counsel makes the call for your organization.
Infrastructure Certified Is Not The Same As Certified
One distinction is worth understanding before you put this in an RFP response, and it applies to several vendors in this category rather than just this one. BastionGPT describes HITRUST CSF Certified infrastructure and SOC 2 Type II attested infrastructure, and separately notes it is pursuing its own certification and attestation. Those are two different claims.
Inheriting a cloud provider's certifications means the servers underneath you were audited. Holding your own means the auditors examined how your application handles data, who can access it, how access is logged, and whether your controls actually operate. Both matter. Only the second one tells an auditor about the vendor.
BastionGPT states the position plainly rather than blurring it, and pursuing your own certification takes real time and money, so treat this as a reading instruction rather than a criticism. When any vendor in this space says "SOC 2" or "HITRUST," ask whose. Then ask for the report.
It Removes The Friction, Not The Blind Spot
The automatic BAA is the genuinely clever part of this product. Most compliant AI tools die in procurement, because the BAA sits behind an enterprise contract, a seat minimum, or a sales conversation nobody has time for. BastionGPT removed that step. A clinician who needs safe AI access this week can have it this week.
The limit is who the seats reach. Everyone you provision is, by definition, someone who came forward and asked. The exposure sits with the people who did not: the nurse using a consumer chatbot on a phone, the administrator running a recorder in a family meeting, the resident pasting a discharge summary into whatever was free. A dozen compliant seats alongside a few hundred uncounted users is not a governed organization, it is a governed dozen.
A solo practice should buy this and stop reading. A health system should count the uncounted first, because that number decides whether a dozen seats was the right purchase or an expensive way to feel covered.
Count them before you count seats. The nurse on a consumer chatbot, the resident pasting a discharge summary into whatever was free, the administrator running a recorder in a family meeting: none of them appear in a BastionGPT tenant, because the AI your organization never provisioned is defined by not appearing anywhere. A clean BAA on the seats you bought answers nothing about the seats you did not.
Disclosure
AuthenTech AI operates a governed AI platform for health systems, so we compete with BastionGPT for part of the same budget. Everything above is drawn from BastionGPT's own published documentation with the sources named and the date recorded, and we have applied the same standard we apply to ourselves. Where we think they are ahead of the category, we have said so.
BastionGPT and HIPAA: Common Questions
Does BastionGPT sign a BAA?
Yes. BastionGPT states that all of its plans automatically incorporate a BAA, on every paid plan. There is no enterprise-tier gate and no separate request process, so coverage starts when the plan does.
Does BastionGPT train on our clinical data?
No. Its documentation states that data entered into BastionGPT is never sold or used for training AI models, and that customer data is never used to train any underlying model.
Is BastionGPT HITRUST certified?
Read this carefully. BastionGPT describes HITRUST CSF Certified infrastructure and SOC 2 Type II attested infrastructure, and states it is pursuing its own certification and attestation. Inherited infrastructure certifications cover the servers underneath the application, not the application's own controls. Ask which report you are being shown before relying on it in an RFP.
Does it cover 42 CFR Part 2 records?
BastionGPT states it is engineered to support the requirements of both HIPAA and 42 CFR Part 2. Part 2 governs substance use disorder treatment records and carries stricter consent requirements than HIPAA alone. Few tools in this directory address it at all, so if that is your workload this is a meaningful differentiator.
Is BastionGPT enough for a whole health system?
It depends on which problem you are solving. For giving individual clinicians a lawful chat window, it is a strong fit with unusually low procurement friction. For governing AI across a workforce, it is the wrong shape: a per-seat tool cannot show you what unsanctioned tools are in use, enforce policy on people without seats, or produce an audit trail across the tools you did not buy. Most health systems need both answers, in that order.
Is this legal advice?
No. This is not legal advice, and your counsel makes the call for your organization.
Related Resources
Continue across the compliance directory and the core governance hubs
AI Tool HIPAA Compliance Directory
Every "is X HIPAA compliant" verdict in one sourced, dated directory
Read article →Best HIPAA Compliant AI Platforms
An independent comparison of the five product categories that claim this label
Read article →HIPAA & AI Compliance
How HIPAA applies to AI tools and what OCR expects in 2026
Read article →Healthcare Shadow AI Use Cases
Where shadow AI shows up across clinical and administrative workflows
Read article →Before You Pick A Tool, Find Out What You Already Have
Most organizations evaluating their first compliant AI tool already have six uncounted ones in use. The assessment takes about fifteen minutes and tells you which problem to solve first.