Effective Date: August 8, 2026
This Business Associate Agreement (BAA) template is provided for organizations that require HIPAA compliance. RepLogix is prepared to execute a BAA with covered entities or business associates when RepLogix's services will be used in a manner that involves Protected Health Information (PHI). This template is provided for reference; the final agreement will be customized to the specific relationship.
This BAA template establishes the obligations of RepLogix ("Business Associate") and the covered entity or its business associate ("Covered Entity") when RepLogix processes, stores, or transmits Protected Health Information (PHI) on behalf of the Covered Entity, as required under the HIPAA Privacy and Security Rules (45 CFR Parts 160 and 164).
RepLogix agrees to:
RepLogix may use or disclose PHI only as necessary to perform the services described in the underlying service agreement, or as required by law. RepLogix will not use or disclose PHI for any independent purpose not authorized by the Covered Entity.
RepLogix implements the following safeguards for ePHI:
In the event of a Breach of unsecured PHI:
The Covered Entity may, upon reasonable notice, audit RepLogix's compliance with this BAA. RepLogix will make available relevant records and documentation. Alternatively, RepLogix may provide third-party audit reports (e.g., SOC 2) to satisfy audit requirements.
RepLogix's liability under this BAA is limited to the liability provisions of the underlying service agreement. Nothing in this BAA limits either party's liability as required by applicable law.
To request a fully executed BAA, contact RepLogix. The BAA will be customized to the specific relationship, signed by authorized representatives of both parties, and retained as a formal agreement.