What to ask an AI vendor before it touches patient data
13 questions for any AI vendor about agreements, data, what the AI may do, security and rollout, worded for your region's law. Modulon's own answers are beside each one.
What you get
- 13 questions in 4 groups
- What a good answer includes, for each one
- A printable copy for your next vendor call
Your region
The questions follow HIPAA and state privacy law. Modulon signs a Business Associate Agreement with clinics here.
The questions
Agreements and data
Will you sign a Business Associate Agreement before handling any patient data?
Modulon: Yes. We sign a Business Associate Agreement with every clinic before any patient information is shared. Read the policy
Where will our patients' data be stored?
Modulon: In United States. Patient data does not leave the region, except as your data protection terms allow. Read the policy
Which other companies handle our data?
Modulon: Our subprocessors page lists every provider in each region and what each one does. Read the policy
The AI
Do you or your model providers train AI on our patients' data?
Modulon: No. Our model providers keep none of the data they process and don't use it to train models, and neither do we. Read the policy
Can the AI do something our rules don't allow?
Modulon: No. Your rules are checked in software before every action, and anything outside them goes to your staff. Read the policy
Can anything clinical reach a patient without a clinician?
Modulon: Never. A clinician approves results, refills and any clinical message before a patient sees it. Read the policy
Will patients know they're dealing with an AI?
Modulon: Yes. Calls and first texts say they come from an automated assistant, and patients can ask for a person at any time. Read the policy
Is every action the AI takes recorded?
Modulon: Yes. Every action is recorded with the rule that allowed it, and your staff can see and correct it. Read the policy
Security
How is our data encrypted?
Modulon: With TLS 1.2 or higher in transit and AES-256 at rest. Keys are held in a managed key service, never with the data. Read the policy
Who on your team can see our data?
Modulon: A small number of engineers, for a limited time, with multi-factor authentication. Every access is recorded. Read the policy
What happens to our data if we leave?
Modulon: You can export it for 30 days after you leave. It is deleted within 60 days of the agreement ending, and from backups within 90. Read the policy
Rollout
Can we see what it would do before it does anything?
Modulon: Yes. Each new task runs in watch-only mode first, and you turn it on once you've seen the drafts. Read the policy
Does it work inside our record system?
Modulon: Yes. Modulon works inside the system that holds your patient records. Read the policy
Frequently asked questions
Practice owners, managers and compliance officers comparing AI vendors for calls, scheduling, notes or billing.
The agreement a vendor signs and the law it must meet differ by region: a business associate agreement under HIPAA in the United States, a data processing agreement elsewhere.
From our AI Transparency, Security and Subprocessors pages, linked beside each answer.
Something else? Ask us directly.