...
Its not related to GDPR, but here as a close related topic. See https://www.atlassian.com/trust/compliance/resources/hipaa for more context.
Atlassian FAQ’s
Customer Facing FAQ answers from Atalssian:https://atlassianpartners.atlassian.net/wiki/spaces/resources/pages/342655180/HIPAA+Compliance+Overview
Question | Response |
---|---|
Why is Atlassian expanding HIPAA availability across all paid plans? | We listened to customer feedback and an overwhelming amount of smaller teams expressed the need for HIPAA compliance. We believe in a cloud-first future for all of our customers and decided to invest in additional automation that would enable us to expand HIPAA compliance beyond the Enterprise plan. We are currently working through the details of implementation and will share once HIPAA is available across all paid plans. Our Enterprise plan continues to be the best choice for enterprise customers and includes a number of features like BYOK, mulitple instances, Atlassian Analytics, and Atlassian Access included for free with every purchase. |
Will Atlassian sign customer BAAs?
| No, Atlassian’s BAA is carefully and specifically drafted and structured to reflect the manner that Atlassian offers its products and services, and Atlassian’s privacy and security program. Due to our company’s emphasis on providing high-quality products to a large customer base under a uniform compliance program, we do not sign customer BAAs. However, we do listen to customer feedback, track and collect it, so if you have some feedback on our BAA, please let us know. |
Are marketplace apps included in this compliance? | No, our BAA only covers Jira Software Cloud, Confluence Cloud, and JSM Cloud products. Marketplace apps integrated with Atlassian products are not covered by a Customer’s BAA with Atlassian. Customers must assess their use of each marketplace app and determine if they need a BAA with the app in order to meet their compliance needs. |
Atlassian Platform HIPAA support
Atlassian provides comprehensive privacy and security protections that enable customers to operate Atlassian products in compliance with HIPAA.
...