Skip to content
Ayliea — AI Security Assessment & Compliance Consulting

Free Tool — Healthcare

HIPAA AI Exposure Score

Ten questions across the areas where AI tools create real HIPAA exposure. Instant score and exposure level — no signup. Detailed per-gap breakdown unlocked with your email.

About this score

What it is: an indicative self-assessment to help you gauge your AI exposure against the areas where AI tools create the most common HIPAA risk — ePHI inventory, shadow AI, BAA coverage, vendor evaluation, minimum-necessary controls, access management, insurer and partner readiness, incident response, and documented policy. Each question corresponds to a real compliance area the HHS Office for Civil Rights (OCR) or a cyber-insurer might probe.

What it isn't: a HIPAA audit, a substitute for one, or legal advice. The score reflects your self-reported posture, not verified evidence. A formal assessment by a named assessor looks for documentation, tests controls, and produces a signed report auditors accept as proof.

Disclosure: Ayliea provides HIPAA AI risk assessments and competes in this space. We benefit when healthcare organizations take AI governance seriously. The questions and scoring are ours; an independent assessor or legal counsel may reach different conclusions based on your specific facts.

Currency: Questions last reviewed 2026-06-28. We update them when material guidance from OCR, HHS, or applicable NIST publications changes the compliance landscape.