HIPAA & BAA · AI / LLM
Is Perplexity HIPAA compliant?
Conditionally. Perplexity permits PHI only under its Enterprise offering (Enterprise Pro / Enterprise Max) with an executed BAA; consumer, Pro, and API tiers are not covered.
Key facts
- BAA available: Conditionally — on specific plans
- What it takes: Enterprise Pro / Enterprise Max with executed BAA
- Official source: Perplexity — Enterprise Terms of Service — https://www.perplexity.ai/hub/legal/enterprise-terms-of-service (verified 2026-06)
How to use Perplexity in a HIPAA-compliant way
- Engage Perplexity's enterprise sales team about BAA availability for your use case and region.
- Subscribe to Perplexity Enterprise Pro or Enterprise Max.
- Execute a Business Associate Agreement with Perplexity.
- Restrict PHI to the covered Enterprise services (not the API, website, or consumer apps).
- Confirm covered scope in writing, since Perplexity does not publicly post its BAA text.
Important caveats
- Consumer/free, Pro subscription, and standard API access are explicitly NOT HIPAA-eligible.
- Per the Enterprise Terms, PHI may not be processed unless a BAA has been executed.
- Perplexity does not publish the BAA text, so exact coverage must be confirmed directly with the vendor.
The bottom line
No software is "HIPAA compliant" on its own. HIPAA compliance is a property of your organization, not a tool. Even with a signed BAA, you remain responsible for configuring Perplexity correctly, limiting access to PHI, training staff, and maintaining your own safeguards. This page is general information, not legal advice; confirm current terms with Perplexity.
Frequently asked questions
Does Perplexity sign a BAA?
On specific plans. Enterprise Pro / Enterprise Max with executed BAA A signed BAA is required before any PHI is involved.
Is Perplexity HIPAA compliant out of the box?
No software is "HIPAA compliant" by itself. Even when Perplexity offers a BAA, you are responsible for signing it, configuring the product correctly, restricting access, and maintaining your own administrative, physical, and technical safeguards.
What should I check before using Perplexity with PHI?
Consumer/free, Pro subscription, and standard API access are explicitly NOT HIPAA-eligible.