WithinEHR Sub-Processors
WithinEHR relies on a carefully vetted set of sub-processors to deliver its services — including cloud hosting, analytics, communications, and secure storage. All sub-processors are subject to strict contractual requirements, including Business Associate Agreements (BAAs) where applicable, in compliance with HIPAA regulations.
Sub-Processor Categories
Sub-processors used by WithinEHR may include providers in the following categories:
- Cloud infrastructure and hosting
- Secure data storage and backup
- Email and communications platforms
- Analytics and performance monitoring
- Payment processing
How Sub-Processors Are Governed
Every sub-processor with potential access to PHI is required to:
- Sign a HIPAA-compliant Business Associate Agreement
- Meet WithinEHR's security and data handling standards
- Undergo periodic review for continued compliance
Questions
For a current list of sub-processors or to raise a concern about a specific vendor, contact withinehr.com/contact.