Bluehost Web Hosting Help
Are You HIPAA Compliant?
You may NOT use our Services for hosting “protected health information” under the federal HIPAA law and related regulations. Other hosting providers may specifically price and offer “HIPAA compliant” hosting services, which typically are more expensive, and involve the hosting company signing a “Business Associate Agreement.” We do not offer such a product at this time.
We do not sign Business Associate Agreements. Storing “protected health information” on our servers constitutes a breach of our User Agreement and is an unauthorized use of our Services. Our Services are not represented to be HIPAA compliant, and you may not use them for such purposes. Our User Agreement expressly states:
We are not "HIPAA compliant." Users are solely responsible for any applicable compliance with federal or state laws governing the privacy and security of personal data, including medical or other sensitive data. Users acknowledge that the Services may not be appropriate for the storage or control of access to sensitive data, such as information about children or medical or health information. Bluehost does not control or monitor the information or data you store on, or transmit through, our Services. We specifically disclaim any representation or warranty that the Services, as offered, comply with the federal Health Insurance Portability and Accountability Act ("HIPAA"). Customers requiring secure storage of "protected health information" under HIPAA are expressly prohibited from using this Service for such purposes. Storing and permitting access to "protected health information," as defined under HIPAA is a material violation of this User Agreement, and grounds for immediate account termination. We do not sign "Business Associate Agreements" and you agree that Bluehost is not a Business Associate or subcontractor or agent of yours pursuant to HIPAA. If you have questions about the security of your data, please contact our Technical Support team.
Recommended Help Content
TLS 1.0 PCI Compliance
This article will discuss how you might be affected by the removal of TLS 1.0 in the updated PCI Compliance Standards.
This article will explain the benefits of SiteLock in regards to reputation monitoring.
Related Help Content
India Service Tax
India imposes a 18% Service Tax on electronically supplied services sold by foreign entities to customers located in India.
Domain Privacy for .us Domains
The WHOIS database shows my personal information for my .us domain names. How do I get privacy for the .us domain?
GDPR stands for General Data Protection Regulation. This law was proposed by the European Union (EU), and will go into effect May 25, 2018. What is GDPR, and what do you need to know to prepare for it
Office 365: Multi-Factor Authentication
Office 365 requires admins users to set up multi-factor authentication before they can use the account. If customers do not set up their multi-factor authentication within 48 hours, they may be locked out.
Registration Data Access Protocol (RDAP)
Starting on August 26, 2019, the Registration Data Access Protocol (RDAP) will be a new protocol available that provides WHOIS details for generic top-level domains (gTLDs) (e.g., .com, .net).
MySQL Repair and Optimize Tables in phpMyAdmin
How to repair and optimize your database using phpMyAdmin:
California Consumer Privacy Act
The California Consumer Privacy Act is a law designed to enhance consumer privacy rights for California consumers and encourage transparency regarding how businesses collect and use personal information.
Tax Rates and Exemptions
In accordance with all federal, state, and local tax laws, Bluehost currently recognizes the following tax rates.