惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

宝玉的分享
宝玉的分享
J
Java Code Geeks
S
SegmentFault 最新的问题
L
LangChain Blog
M
MIT News - Artificial intelligence
Stack Overflow Blog
Stack Overflow Blog
IT之家
IT之家
量子位
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
雷峰网
雷峰网
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
The Cloudflare Blog
MongoDB | Blog
MongoDB | Blog
Microsoft Security Blog
Microsoft Security Blog
腾讯CDC
H
Help Net Security
阮一峰的网络日志
阮一峰的网络日志
Jina AI
Jina AI
N
Netflix TechBlog - Medium
A
About on SuperTechFans
博客园 - 叶小钗
美团技术团队
人人都是产品经理
人人都是产品经理
D
DataBreaches.Net

Netlify Changelog

Gemini 3.5 Flash now available in Agent Runners 4 Nuxt CVEs: what Netlify users need to know Gemini 3.5 Flash now available in AI Gateway Agent Runners workflow improvements Next.js & React security release (May 2026): what to know Block project transfers out of your team Gemini 3.1 Flash-Lite now available in AI Gateway OpenAI GPT-5.5 Instant now available in AI Gateway New `netlify logs` CLI command Deploy to Netlify with Stripe Projects Netlify Database is now generally available OpenAI GPT-5.5 and GPT-5.5 Pro in AI Gateway & Agent Runners Rename an agent run GPT Image 2 now available in AI Gateway New frontend-design skill for Agent Runners Claude Opus 4.7 now available in AI Gateway and Agent Runners Pricing updates for Credit-based plans New sorting and filter controls on the Members page Netlify Database GA coming soon, no new databases for now Deploy logs streaming is now faster Netlify CLI adds prompt-based creation and anonymous deploys Deploy from Codex with the Netlify Plugin Hydrogen with React Router 7 now supported on Netlify Monitor credit usage by day Invoices for Enterprise Available on the Billing Page AI app development on production infrastructure with Netlify Introducing Prompt Templates OpenAI GPT-5.4 Nano and GPT-5.4 Mini in AI Gateway Change your pricing plan Internal Builder Role & Project Access Controls
Netlify supports HIPAA compliance
Nahrin Jalal · 2024-08-16 · via Netlify Changelog

As part of our commitment to providing customers with a development platform that is secure and compliant by design, today Netlify is announcing our Health Insurance Portability and Accountability Act of 1996 (HIPAA) compliant service offering for enterprise customers handling personal health data. This allows relevant companies to stay compliant with industry-specific regulations while leveraging our frontend cloud. Our HIPAA service offering uses the same advanced security measures offered in our core platform but it’s also undergone an additional audit to ensure compliance with the healthcare data regulation and is suitable for the transmission and processing of Personal Health Information (PHI).

What does HIPAA compliance on Netlify mean for your business?

HIPAA promotes the use of electronic health records while safeguarding the security and privacy of PHI. For healthcare providers and businesses handling PHI, compliance with HIPAA is not just a regulatory obligation but a crucial component of maintaining trust with patients and clients.

Netlify is considered a business associate for our healthcare customers, who must comply with HIPAA. With this announcement of HIPAA compliance, enterprise customers handling PHI can now execute a Business Associates Agreement (BAA) with Netlify.

Empower your development with secure architectures

Security in the cloud is a shared responsibility—one we don’t take lightly. To make it easier, we’ve created secure reference architectures to assist customers in developing applications that must meet regulatory or special data processing requirements in the healthcare space and beyond. You can learn more about our security offerings and how we safeguard your infrastructure here.

Advanced security measures for peace of mind

Our HIPAA service offering builds on the robust security measures already embedded in Netlify’s core platform. However, it has undergone an additional, rigorous audit to ensure full compliance with healthcare data regulations. Some of the key security features include:

  • End-to-end encryption: Ensuring all customer data is encrypted both in transit and at rest.
  • Vulnerability and patch management: Regular internal and third-party penetration testing, alongside ongoing patch management, to identify, mitigate, and address potential security risks.
  • Access control: Strict control mechanisms to ensure that only authorized personnel can access sensitive data.

HIPAA compliance is the latest addition to our growing list of industry-standard certifications, including AICPA SOC 2 Type 2, ISO 27001, ISO 27018, and PCI DSS v4.0. Our security-first approach ensures that your web applications not only meet regulatory requirements but also maintain the highest standards of data protection.

Get started with HIPAA compliance on Netlify

We’re dedicated to providing the tools and support you need to deliver secure, compliant web applications at scale. If you’re ready to take advantage of our HIPAA-compliant service offering, our sales and solution engineering teams are here to help you get started.

If you want to do additional research on your own and learn more about our HIPAA-compliant service offering, visit our Trust Center, where you can explore the full range of compliance standards and security practices we adhere to.