HIPPA form storage: what is done with that data internally when forms are submitted, and how long the forms are stored in your systems

  • Profile Image
    Sarah Joslyn 
    Asked on April 16, 2019 at 11:14 AM

    Good morning,


    We were wanting to have more information about where the completed forms are located in your systems, what is done with that data internally when forms are submitted, and how long the forms are stored in your systems? If we cancel our subscription at some point, what is done with the protected patient info? If I embed the form in our website will the submission still be HIPPA compliant?


    Thank you!

  • Profile Image
    david
    Answered on April 16, 2019 at 12:56 PM

    An overview of HIPAA compliant forms can be found in the following page:

    https://www.jotform.com/hipaa/

    With security related information in the following page:

    https://www.jotform.com/hipaa/security/

    Data is stored until deleted by the user and we do not remove user data after any period of time.  If your subscription is cancelled while HIPAA compliance is enabled, after a period of time forms and data would be locked until the account is either upgraded or HIPAA compliance is removed by the user.  Embedded forms use the same security as would be used when submitting the form directly, submissions from embedded forms are also HIPAA compliant when compliance is enabled.