Is Zapier HIPAA compliant?

Workflow automation · vendor site ↗

No BAANot for PHISOC 2 Type II
Will Zapier sign a HIPAA BAA?
No — Zapier does not sign a HIPAA Business Associate Agreement (BAA).
Zapier explicitly does not sign a Business Associate Agreement and does not support HIPAA compliance on any plan. Its own documentation states regulated PHI under HIPAA is not supported on Zapier.
PHI eligibility
Do not use Zapier to store, send, or automate PHI; without a BAA the covered entity bears full regulatory exposure for anything flowing through a Zap.
SOC 2
SOC 2 Type II
Trust center
Sub-processors
Notes
Zapier holds SOC 2 Type II and strong encryption, but security certifications do not equal HIPAA compliance and do not substitute for a BAA.
Last verified 2026-05-31confidence: high· Vendor terms change — confirm directly with Zapier before storing PHI.

Get notified when this changes

We track Zapier's BAA and HIPAA status. Leave your email and we'll send one note if the verdict on this page changes.

One email per change. No newsletter, no selling your address.

How to request and sign a BAA with Zapier

No — Zapier does not sign a HIPAA Business Associate Agreement (BAA).

There is no BAA to request — Zapier will not sign one. Zapier explicitly does not sign a Business Associate Agreement and does not support HIPAA compliance on any plan. Its own documentation states regulated PHI under HIPAA is not supported on Zapier.

Need a vendor in this space that does? See which HIPAA compliant project management software sign a BAA →

Last verified 2026-05-31 · Plan tiers and BAA terms change often — confirm the current process directly with Zapier before you rely on it. This is cited public information, not legal advice.

Frequently asked questions

Does Zapier sign a HIPAA Business Associate Agreement (BAA)?
No — Zapier does not sign a HIPAA Business Associate Agreement (BAA). Zapier explicitly does not sign a Business Associate Agreement and does not support HIPAA compliance on any plan. Its own documentation states regulated PHI under HIPAA is not supported on Zapier.
Is Zapier HIPAA compliant?
Zapier is not HIPAA-ready: it does not sign a Business Associate Agreement (BAA), so you cannot use it to process protected health information (PHI). Do not use Zapier to store, send, or automate PHI; without a BAA the covered entity bears full regulatory exposure for anything flowing through a Zap.
Can you store PHI (protected health information) in Zapier?
Do not use Zapier to store, send, or automate PHI; without a BAA the covered entity bears full regulatory exposure for anything flowing through a Zap.
Is Zapier SOC 2 certified?
Zapier reports a SOC 2 Type II attestation according to its public security documentation.
How do I request a HIPAA BAA from Zapier?
You can't — Zapier does not sign a HIPAA Business Associate Agreement. Zapier explicitly does not sign a Business Associate Agreement and does not support HIPAA compliance on any plan. Its own documentation states regulated PHI under HIPAA is not supported on Zapier.
What plan do I need to sign a BAA with Zapier?
Zapier does not offer a BAA on any plan, so no plan qualifies. Zapier explicitly does not sign a Business Associate Agreement and does not support HIPAA compliance on any plan. Its own documentation states regulated PHI under HIPAA is not supported on Zapier.

Sources

https://zapier.com/blog/is-zapier-hipaa-compliant/
Supports: Zapier does not sign a BAA and does not support HIPAA/PHI on any plan; holds SOC 2 Type IIdated: 2025-10-09
This page is cited public information, not legal or compliance advice. A BAA's availability can depend on your specific plan, region, and contract. Always confirm current terms with Zapier before processing protected health information.

Check another vendor