Yes. Ada is HIPAA compliant and maintains zero data retention (ZDR) with all LLM providers. Member data, including PHI, coverage details, and claims information, is never stored or used by third-party AI models. For health insurance companies, that's foundational.
Member conversations involving sensitive health information, plan details, and eligibility data must meet HIPAA requirements at every layer of the technology stack. Ada provides full compliance documentation—covering SOC 2 Type II, HIPAA, GDPR, PCI DSS, and AIUC-1 (the first AI agent-specific compliance standard), and more—during the procurement process.
For more information, check out our trust and safety page.