Legal · HIPAA BAA

Business Associate Agreement.
Included on every plan.

Frontis signs a HIPAA Business Associate Agreement with every dental practice before going live. Here is what it covers.

Every Frontis plan includes a signed BAA at no extra cost. We send it via DocuSign during onboarding — you sign, we countersign, both parties keep a copy. Takes about five minutes.

What is a BAA and why do you need one?

Under HIPAA, when a dental practice (a “Covered Entity”) shares Protected Health Information with a third-party vendor (a “Business Associate”), a signed Business Associate Agreement is legally required before any PHI is shared.

When a patient calls your practice and Frontis answers, that call may involve PHI — the patient’s name, date of birth, symptoms, insurance details. That makes Frontis your Business Associate, and a BAA must be in place before the first call.

This is non-negotiable under HIPAA. We will not go live with any practice without a signed BAA.


What our BAA covers


Our HIPAA-compliant infrastructure

SafeguardImplementation
Encryption at restAES-256 on all stored recordings and transcripts (AWS S3)
Encryption in transitTLS 1.3 on all data transmission
Access controlsRole-based access, audit logging on all PHI access
Data retention90 days default; practice-controlled deletion available
Breach detectionAWS CloudWatch monitoring with automated alerting
BAA with subprocessorsSigned with Vapi, Twilio, AWS, Resend

How to get your BAA signed

Your BAA is sent automatically as part of onboarding. If you need it ahead of time, contact us at hello@frontis.ai and we will send the DocuSign link within one business day.

Need a BAA right now? Email hello@frontis.ai with your practice name and we will send it within one business day.
© 2026 Frontis AI, Inc.
HIPAA CompliantBAA Included