Come for the products,
stay for the community

The Atlassian Community can help you and your team get more value out of Atlassian products and practices.

Atlassian Community about banner
4,369,385
Community Members
 
Community Events
168
Community Groups

Is Confluence cloud is HIPAA compliant? Do they sign BAA?

Hi,

Our organization maintains procedures/documents in confluence page. I want to know if it is HIPAA compliant. If yes, please let me know to have BAA signed from Confluence/Atlassian for our organization.

 

Thanks,

Lavanya

5 answers

1 accepted

2 votes
Answer accepted

As of February 2022 Atlassian can sign BAAs with customers licensing JSW and Confluence Enterprise.  Please visit this page for details: https://www.atlassian.com/trust/compliance/resources/hipaa 

This is great news, long-awaited. Thanks @Filiberto Selvas for providing the update.

Yes it is good news that Atlassian is moving in the right direction.  However, It should apply to all offerings.  Forcing the purchase of the twice as expensive Enterprise is not appropriate.  The whole point is to build security into everything you offer for all customers.  I give this a C- effort.  

Still no BAA being able to be signed?

With Solarwinds style attacks on the rise, it is time for Atlassian to step the security game.  We are in healthcare and would like to use Atlassian Cloud vs Data Center but until they create US only encrypted customer repositories and get HITRUST certified we cannot use it.  Hope they invest in healthcare security.

Like # people like this
1 vote
Daniel Eads Atlassian Team Jul 06, 2018

Hi Lavanya,

Unfortunately we aren't able to sign a BA agreement for our Cloud offerings. We do recommend Confluence Server for cases where you need to meet compliance.

For this and other questions, check out our Trust FAQ.

Cheers,
Daniel

Fadoua Community Leader Jul 06, 2018

Thank you @Daniel Eads!

Any update on the status of Atlassian having the ability to sign a BAA?

Fadoua Community Leader Jun 12, 2020

@Daniel Eads  any updates on this one?

Like hodachalliv likes this

What is the current status of this? tools are no longer supporting server version and I haven't heard of HIPAA compliance being achieved. We will have to leave atlasian tools unless this is resolved soon.

0 votes

Hi Lavanya,

Nor sure Confluence is HIPAA compliant. I asked about AWS or other hosting services to make sure about all my Atlassian Tools. It was confirmed that yes and they even have a license.

Let me reach out to an Atlassian Expert so that we can make sure. I don't recall reading or hearing that Confluence is HIPAA compliant.

Cheers,

Suggest an answer

Log in or Sign up to answer
TAGS

Atlassian Community Events