Is New Relic HIPAA compliant?

Observability & monitoring · vendor site ↗

BAA on select plansPHI with conditions
Will New Relic sign a HIPAA BAA?
Sometimes — New Relic signs a HIPAA BAA only on specific plans or add-ons.
New Relic signs a Business Associate Addendum with covered entities, but requires a HIPAA-enabled account: a current Enterprise edition subscription with the Data Plus option (or another New Relic-approved subscription), provisioned in a special environment that must be confirmed in writing before any PHI is sent. New Relic states it was not designed as a system of record for patient care and cannot amend PHI.
PHI eligibility
PHI is permitted only into a New Relic-provisioned HIPAA-enabled account (Enterprise + Data Plus or an approved equivalent) under a signed BAA; do not send PHI before written confirmation.
SOC 2
Not publicly confirmed
Trust center
Sub-processors
Notes
Gated to the Enterprise edition with Data Plus (or approved alternative) plus a dedicated HIPAA-enabled environment that requires coordination with a rep. PHI may also appear incidentally in logs.
Last verified 2026-05-31confidence: high· Vendor terms change — confirm directly with New Relic before storing PHI.

Get notified when this changes

We track New Relic's BAA and HIPAA status. Leave your email and we'll send one note if the verdict on this page changes.

One email per change. No newsletter, no selling your address.

How to request and sign a BAA with New Relic

Sometimes — New Relic signs a HIPAA BAA only on specific plans or add-ons.

Request routeSelf-serve — enable it in your account
  1. 1
    Get on a qualifying plan
    New Relic signs a Business Associate Addendum with covered entities, but requires a HIPAA-enabled account: a current Enterprise edition subscription with the Data Plus option (or another New Relic-approved subscription), provisioned in a special environment that must be confirmed in writing before any PHI is sent. New Relic states it was not designed as a system of record for patient care and cannot amend PHI.
  2. 2
    Request the Business Associate Agreement
    New Relic lets you obtain the BAA without a sales call. Follow the path named in the plan requirement above — typically an in-product toggle or a billing / compliance settings page — then request and accept the agreement from your own account.
  3. 3
    Confirm what PHI is allowed before you store any
    PHI is permitted only into a New Relic-provisioned HIPAA-enabled account (Enterprise + Data Plus or an approved equivalent) under a signed BAA; do not send PHI before written confirmation. Match your configuration to this scope before putting protected health information into New Relic.
Before you sign — watch for
  • A signed BAA here does NOT clear you to deliberately store PHI — the vendor still restricts intentional PHI collection or how it may be used. Confirm the exact scope.
Last verified 2026-05-31 · Plan tiers and BAA terms change often — confirm the current process directly with New Relic before you rely on it. This is cited public information, not legal advice.

Frequently asked questions

Does New Relic sign a HIPAA Business Associate Agreement (BAA)?
Sometimes — New Relic signs a HIPAA BAA only on specific plans or add-ons. New Relic signs a Business Associate Addendum with covered entities, but requires a HIPAA-enabled account: a current Enterprise edition subscription with the Data Plus option (or another New Relic-approved subscription), provisioned in a special environment that must be confirmed in writing before any PHI is sent. New Relic states it was not designed as a system of record for patient care and cannot amend PHI.
Is New Relic HIPAA compliant?
New Relic can be HIPAA-compliant only on the specific plans or add-ons where it will sign a Business Associate Agreement (BAA). PHI is permitted only into a New Relic-provisioned HIPAA-enabled account (Enterprise + Data Plus or an approved equivalent) under a signed BAA; do not send PHI before written confirmation.
Can you store PHI (protected health information) in New Relic?
PHI is permitted only into a New Relic-provisioned HIPAA-enabled account (Enterprise + Data Plus or an approved equivalent) under a signed BAA; do not send PHI before written confirmation.
Is New Relic SOC 2 certified?
We could not confirm a public SOC 2 report for New Relic. SOC 2 is separate from a HIPAA BAA — confirm both directly with New Relic.
How do I request a HIPAA BAA from New Relic?
New Relic lets you obtain the BAA without a sales call. Follow the path named in the plan requirement above — typically an in-product toggle or a billing / compliance settings page — then request and accept the agreement from your own account. Confirm current terms directly with New Relic before storing PHI.
What plan do I need to sign a BAA with New Relic?
New Relic signs a Business Associate Addendum with covered entities, but requires a HIPAA-enabled account: a current Enterprise edition subscription with the Data Plus option (or another New Relic-approved subscription), provisioned in a special environment that must be confirmed in writing before any PHI is sent. New Relic states it was not designed as a system of record for patient care and cannot amend PHI.

Sources

https://newrelic.com/termsandconditions/hipaabaafaq
Supports: Confirms New Relic signs a BAA and that a HIPAA-enabled account must be provisioned before sending PHIdated: undated
https://docs.newrelic.com/docs/security/security-privacy/compliance/hipaa-readiness-new-relic/
Supports: States Enterprise edition with Data Plus (or approved subscription) and written confirmation are required before PHIdated: undated
This page is cited public information, not legal or compliance advice. A BAA's availability can depend on your specific plan, region, and contract. Always confirm current terms with New Relic before processing protected health information.

Check another vendor