{"id":2774,"date":"2022-03-30T19:12:10","date_gmt":"2022-03-30T16:12:10","guid":{"rendered":"https:\/\/www.pragmait.com\/therapyboss\/?page_id=2774"},"modified":"2022-04-05T22:02:25","modified_gmt":"2022-04-05T19:02:25","slug":"baa","status":"publish","type":"page","link":"https:\/\/pragmait.com\/therapyboss\/baa\/","title":{"rendered":"BAA"},"content":{"rendered":"<!-- security-page-main-block.php -->\r\n<section class=\"security-page-main-block\">\r\n\t<div class=\"container\">\r\n\t\t<div class=\"row\">\r\n\t\t\t<div class=\"col-lg-12\">\r\n\t\t\t\t<div class=\"title-content\">\r\n\t\t\t\t\t<p>Business Associate Agreement<\/p>\n<p>Effective March 22, 2021<\/p>\t\t\t\t<\/div>\r\n\r\n\t\t\t\t\t\t\t\t    <a class=\"link\" href=\"https:\/\/pragmait.com\/therapyboss\/wp-content\/uploads\/2022\/03\/THERAPYBOSS-BUSINESS-ASSOCIATE-AGREEMENT-2021-03-22.pdf\">Download PDF<\/a>\r\n\t\t\t\t\r\n\t\t\t<\/div>\r\n\t\t<\/div>\r\n\t<\/div>\r\n<\/section>\t\n\n<!-- ref-page-content-block.php -->\n<section class=\"ref-page-content-block\">\n\t<div class=\"container\">\n\t\t<div class=\"row\">\n\t\t\t<div class=\"col-lg-12\">\n\t\t\t\t<div class=\"top-content\">\n\t\t\t\t\t<p><span style=\"font-weight: 400;\">This Business Associate Agreement (the \u201cBAA\u201d) between Customer (\u201cCovered Entity\u201d) and Pragma-IT, LLC (\u201cBusiness Associate\u201d) will be in effect during any such time period that Covered Entity is using services provided by Pragma-IT, LLC (\u201cPragma-IT\u201d) and upon termination as set forth in Section 5 of this Agreement.<\/span><\/p>\t\t\t\t<\/div>\n\n\t\t\t\t<div class=\"main-content-block\">\n\t\t\t\t\t \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\tRecitals\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p><span style=\"font-weight: 400;\">WHEREAS, Covered Entity has engaged Business Associate to perform services or provide software, or both;<\/span><\/p>\n<p><span style=\"font-weight: 400;\">WHEREAS, Covered Entity possesses Individually Identifiable Health Information that is protected under HIPAA (as hereinafter defined), the HIPAA Privacy Regulations (as hereinafter defined), the HIPAA Security Regulations (as hereinafter defined), and the HITECH Standards (as hereinafter defined) and is permitted to use or disclose such information only in accordance with such laws and regulations;<\/span><\/p>\n<p><span style=\"font-weight: 400;\">WHEREAS, Business Associate may receive such information from Covered Entity, or create and receive such information on behalf of Covered Entity, in order to perform certain of the services or provide certain of the goods, or both; and<\/span><\/p>\n<p><span style=\"font-weight: 400;\">WHEREAS, Covered Entity wishes to ensure that Business Associate will appropriately safeguard Individually Identifiable Health Information;<\/span><\/p>\n<p><span style=\"font-weight: 400;\">WHEREAS, Covered Entity and Business Associate agree as follows:\u00a0<\/span><\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t1. Definitions\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p>The parties agree that the following terms, when used in this BAA, shall have the following meanings, provided that the terms set forth below shall be deemed to be modified to reflect any changes made to such terms from time to time as defined in the HIPAA Privacy Regulations, the HIPAA Security Regulations, and the HITECH Standards (collectively the HIPAA Rules). Terms used in this BAA and not otherwise defined shall have the meaning of those terms in the HIPAA Rules.<\/p>\n<p>\u201cBusiness Associate\u201d shall have the same meaning as the definition for Business Associate set forth in 45 CFR 160.103.<\/p>\n<p>\u201cCovered Entity\u201d means a health plan, a clearinghouse, or a healthcare provider who transmits any health information in electronic form in connection with a transaction covered by the HIPAA Privacy and HIPAA Security Regulations.<\/p>\n<p>\u201cData Aggregation\u201d means, with respect to PHI created or received by a Business Associate in its capacity as the Business Associate of a Covered Entity, the combining of such PHI by the Business Associate with PHI received by the Business Associate in its capacity as a Business Associate of another Covered Entity, to permit data analyses that relate to the healthcare operations of the respective Covered Entities.<\/p>\n<p>\u201cTerms of Service Agreement\u201d is the agreement between Pragma-IT and its customers and end users. The Terms of Service Agreement dictates the terms and conditions of the services use, parties\u2019 responsibilities, payment terms and more.<\/p>\n<p>\u201cData Retention Period\u201d is a designated time defined in the Terms of Service Agreement. Pragma-IT will maintain the customer\u2019s data containing PHI for the defined period of time.<\/p>\n<p>\u201cIndividually Identifiable Health Information\u201d means information that is a subset of health information, including demographic information collected from an individual, and;<\/p>\n<p>(a) is created or received by a healthcare provider, health plan, employer, or clearinghouse; and<\/p>\n<p>(b) relates to the past, present, or future physical or mental health or condition of an individual; the provision of health care to an individual; or the past, present or future payment for provision of health care to an individual; and (i) that identifies the individual; or (ii) with respect to which there is a reasonable basis to believe the information can be used to identify the individual.<\/p>\n<p>\u201cIndividual\u201d means the same meaning as the term \u201cindividual\u201d in 45 CFR \u00a7164.501 and shall include a person who qualifies as a personal representative in accordance with 45 CFR \u00a7164.502(g).<\/p>\n<p>\u201cProtected Health Information\u201d or \u201cPHI\u201d has the same meaning as the term \u201cprotected health information\u201d in 45 CFR \u00a7164.501, limited to the information created or received by Business Associate from or on behalf of Covered Entity and not including any unsolicited information received directly from an individual who is not yet a patient of Covered Entity.<\/p>\n<p>\u201cHIPAA\u201d means the Health Insurance Portability and Accountability Act of 1996, Public Law 104-191.<\/p>\n<p>\u201cHIPAA Privacy Regulations\u201d means the regulations promulgated under the HIPAA by the United States Department of Health and Human Services to protect the privacy of Protected Health Information, including but not limited to, 45 CFR \u00a7160 and 45 CFR \u00a7164, Subpart A and E.<\/p>\n<p>\u201cHIPAA Security Regulations\u201d means the regulations promulgated under HIPAA by the United States Department of Health and Human Services to protect the security of Protected Health Information, including, but not limited to 45 CFR \u00a7160 and 45 CFR \u00a7164, Subpart A and C.<\/p>\n<p>\u201cHITECH Standards\u201d means the privacy, security and security Breach notification provisions applicable to a Business Associate under Subtitle D of the Health Information Technology for Economic and Clinical Health Act (\u201cHITECH\u201d), which is Title XIII of the American Recovery and Reinvestment Act of 2009 (Public Law 111-5), and any regulations promulgated thereunder.<\/p>\n<p>\u201cBreach\u201d shall mean the acquisition, access, use, or disclosure of Protected Health Information in a manner not permitted under 45 CFR \u00a7164, Subpart E (the \u201cHIPAA Privacy Rule\u201d) \u201cBreach\u201d shall not include:<\/p>\n<p>(a) Any unintentional acquisition, access or use of Protected Health Information by a workforce member or person acting under the authority of Covered Entity or Business Associate, if such acquisition, access or use was made in good faith and within the scope of authority and does not result in further use or disclosure in a manner not permitted under the HIPAA Privacy Rule; or<\/p>\n<p>(b) Any inadvertent disclosure by a person who is authorized to access Protected Health Information at Covered Entity or Business Associate to another person authorized to access Protected Health Information at Covered Entity or Business Associate, respectively, or organized healthcare arrangement in which Covered Entity participates, and the information received as a result of such disclosure is not further used or disclosed in a manner not permitted under the HIPAA Privacy Rule; or<\/p>\n<p>(c) A disclosure of Protected Health Information where Covered Entity or Business Associate has a good faith belief that an unauthorized person to whom the disclosure was made would not reasonably have been able to retain such information.<\/p>\n<p>(d) A Disclosure of Protected Health Information where a Covered Entity or Business Associate, as applicable, demonstrates that there is a low probability that the protected health information has been compromised based on a risk assessment of at least the factors set forth in 45 CFR 164.402 (2)(1)-(iv).<\/p>\n<p>\u201cProvider(s)\u201d means any healthcare professional that provides billable services to patients who is an employee, customer, or has an employment, contractor, or agent relationship with a customer, for which the Services organize information and provide medical billing management.<\/p>\n<p>\u201cRequired By Law\u201d shall have the same meaning as the term \u201crequired by law\u201d in 45 CFR \u00a7164.501.<\/p>\n<p>\u201cSecretary\u201d means the Secretary of the United States of America Department of Health and Human Services or his designee.<\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t2. Obligations and Activities of Business Associate\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p>The obligations and activities of the Business Associate, as required by the Health Insurance Portability and Accountability Act (HIPAA), as amended by the Health Information and Technology for Economic and Clinical Health (\u201cHITECH Act\u201d) and in regulations promulgated thereunder, are as follows:<\/p>\n<p>(a) Business Associate agrees to not use or disclose PHI other than as permitted or required by BAA or as Required by Law.<\/p>\n<p>(b) Business Associate agrees to use appropriate safeguards to prevent use or disclosure of PHI other than as provided for by this BAA.<\/p>\n<p>(c) Business Associate agrees to mitigate, to the extent practicable, any harmful effect that is known to Business Associate of a use or disclosure of PHI by Business Associate in violation of the requirements of this BAA.<\/p>\n<p>(d) Business Associate agrees to report to Covered Entity any use or disclosure of PHI not provided for by this BAA of which it becomes aware.<\/p>\n<p>(e) Business Associate agrees to ensure that any subcontractor, that creates receives, maintains or transmits PHI originating from the Covered Entity on behalf of the Business Associate, agrees to the same restrictions and conditions that apply through this BAA to Business Associate with respect to such information.<\/p>\n<p>(f) Business Associate agrees to provide access, at the request of Covered Entity to PHI in a Designated Record Set, to Covered Entity or, as directed by Covered Entity, to an Individual in in a time and manner that allows Covered Entity to meet the requirements under 45 CFR \u00a7164.524.<\/p>\n<p>(g) Business Associate agrees to make any amendment(s) to PHI in a Designated Record Set that the Covered Entity directs or agrees to pursuant to 45 CFR \u00a7164.526 at the request of Covered Entity, in a time and manner that allows a Covered Entity to meet the requirements of 45 CFR 164.526 and in the time and manner of within thirty (30) days.<\/p>\n<p>(h) Business Associate agrees to make internal practices, books, and records relating to the use and disclosure of PHI received from, or created or received by Business Associate on behalf of, Covered Entity available to the Secretary, for purposes of the Secretary determining compliance with the Privacy Rule.<\/p>\n<p>(i) Business Associate agrees to document such disclosures of PHI and information related to such disclosures as would be required for Covered Entity to respond to a request by an Individual for an accounting of disclosures of PHI in accordance with 45 CFR \u00a7164.528.<\/p>\n<p>(j) Upon request of Covered Entity, Business Associate agrees to provide to Covered Entity or an Individual, information collected in accordance with Section 2(i) of this BAA, as necessary to permit Covered Entity to respond to a request by an Individual for an accounting of disclosures of PHI in accordance with 45 CFR \u00a7164.528.<\/p>\n<p>(k) Business Associate agrees to implement administrative, physical, and technical safeguards that reasonably and appropriately protect the confidentiality, integrity, and availability of the electronic PHI that it creates, receives, maintains, or transmits on behalf of the Covered Entity in accordance with the 45 CFR 164.306 (the HIPAA Security standards).<\/p>\n<p>(l) Business Associate shall report to the Covered Entity any use or disclosure of PHI not permitted by this BAA. Business Associate shall report any Breach of Unsecured PHI to Covered Entity in a manner that is in compliance with its obligations pursuant to 45 CFR \u00a7164.410.<\/p>\n<p>(m) Business Associate shall report a successful Security Incident in accordance with Section 2(l) above and shall report unsuccessful Security Incidents upon request of Covered Entity.<\/p>\n<p>(n) When using, disclosing or requesting PHI, Business Associate agrees to use, disclose or request the minimal amount of information necessary for the stated purpose, unless an exception to the minimum necessary rule, as set forth in 45 CFR \u00a7164.502(b)(2).<\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t3. Permitted Uses and Disclosures by Business Associate\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p><span style=\"font-weight: 400;\">The permitted uses and disclosures of the Business Associate, as required by the Health Insurance Portability and Accountability Act (HIPAA) and in regulations promulgated thereunder, are as follows:<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(a) Except as otherwise limited in this BAA, Business Associate may use or disclose PHI to perform functions, activities, or services for, or on behalf of, Covered Entity as specified in the Terms of Services Agreement and this BAA, provided that such use or disclosure would not violate the Privacy Rule if done by Covered Entity or the minimum necessary policies and procedures of the Covered Entity.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(b) Except as otherwise limited in this BAA, Business Associate may use or disclose PHI for the proper management and administration of the Business Associate or to carry out the legal responsibilities of the Business Associate provided that disclosures are Required By Law, or Business Associate obtains reasonable assurances from the person to whom the information is disclosed that it will remain confidential and used or further disclosed only as Required By Law or for the purpose for which it was disclosed to the person, and the person notifies the Business Associate of any instances of which it is aware in which the confidentiality of the information has been breached.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(c) Except as otherwise limited in this BAA, Business Associate may use PHI to provide Data Aggregation services to Covered Entity as permitted by 45 CFR \u00a7164.504(e)(2)(i)(B).<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(d) Business Associate may use PHI to de-identify the information in accordance with 45 CFR 164.514(a)-(c), and shall retain any and all ownership claims relating to the de-identified data it creates from such PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(e) Business Associate may use PHI to report violations of law to appropriate Federal and State authorities, consistent with \u00a7164.502(j)(1).<\/span><\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t4. Obligations and Activities of Covered Entity\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p><span style=\"font-weight: 400;\">The obligations of Covered Entity, as required by Health Insurance Portability and Accountability Act (HIPAA) and in regulations promulgated thereunder, are as follow:<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(a) To the extent that Covered Entity utilizes services provided by the Business Associate to communicate with patients, Covered Entity is responsible for obtaining and documenting authorizations or requests from patients to communicate through this service and to inform patient of risks associated with such communications as applicable. It shall be Covered Entity\u2019s responsibility to determine what permissions, authorizations or consents shall be documented and maintained for HIPAA compliance purposes. Business Associate does not obtain consent, authorization or permission from patients and the parties agree that is not Business Associate\u2019s obligation to do so or to document or maintain any consent, authorization or permission obtained from patients.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(b) Covered Entity shall notify Business Associate of any limitation(s) in its notice of privacy practices of Covered Entity in accordance with 45 CFR \u00a7164.520, to the extent that such limitation may affect Business Associate\u2019s use or disclosure of PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(c) Covered Entity shall notify Business Associate of any changes in, or revocation of, permission by Individual to use or disclose PHI, to the extent that such changes may affect Business Associate\u2019s use or disclosure of PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(d) Covered Entity shall notify Business Associate of any restriction to the use or disclosure of PHI that Covered Entity has agreed to in accordance with 45 CFR \u00a7164.522, to the extent that such restriction may affect Business Associate\u2019s use or disclosure of PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(e) Covered Entity shall not request Business Associate to use or disclose PHI in any manner that would not be permissible under the Privacy Rule if done by Covered Entity.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(f) Covered Entity agrees to comply with the HIPAA Security Rule, including, without limitation, safeguarding all computers, laptops, cell phones, tablets, or other mobile devices in accordance with the HIPAA Security Regulations.<\/span><\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t5. Termination\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p><span style=\"font-weight: 400;\">(a) Notwithstanding anything to the contrary stated in this BAA, upon termination of this BAA, for any reason, and after any Data Retention Period, Business Associate shall destroy all PHI received from Covered Entity, or created or received by Business Associate on behalf of Covered Entity. This provision shall apply to PHI that is in the possession of subcontractors or agents of Business Associate. Business Associate shall retain no copies of PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(b) In the event that Business Associate determines that returning or destroying PHI is infeasible, Business Associate shall provide to Covered Entity notification of the conditions that make return or destruction infeasible. Upon determination that return or destruction of PHI is infeasible, or to the extent that Business Associate retains PHI for a Data Retention Period, Business Associate shall extend the protections of this BAA to such PHI and, where applicable, limit further uses and disclosures of such PHI to those purposes that make the return or destruction infeasible, for so long as Business Associate maintains such PHI.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(c) The respective rights and obligations of Business Associate under this Section 5 of this BAA shall survive the termination of this BAA for any reason.<\/span><\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t<div class=\"title\">\n\t\t\t\t\t\t6. Other\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"text\">\n\t\t\t\t\t\t<p><span style=\"font-weight: 400;\">(a) The parties agree to take such action as is necessary to amend this BAA from time to time as is necessary for Covered Entity to comply with the requirements of the HIPAA Rules and the Health Insurance Portability and Accountability Act of 1996, Pub. L. No. 104-191.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(b) The parties agree that Business Associate may unilaterally amend this BAA from time to time for the reasons set forth in the above paragraph and for other business reasons and that any such amended BAA which Business Associate signs on a later date will supersede this BAA.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(c) Any ambiguity in this BAA shall be resolved to permit Covered Entity to comply with the HIPAA Rules.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(d) The terms Covered Entity and Business Associate are used in this BAA only for purposes of convenience and are not meant to imply that either party would meet the definition of Covered Entity or Business Associate set forth in the HIPAA regulations.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(e) To the extent not preempted by Federal law, this BAA shall be governed and construed in accordance with the state laws governing the Terms of Service Agreement, without regard to conflicts of laws provisions that would require application of the law of another state.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(f) This BAA does not and is not intended to confer any rights or remedies upon any person other than the parties.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">(g) This BAA supersedes and replaces any prior business associate agreements between the Covered Entity and Business Associate.<\/span><\/p>\t\t\t\t\t<\/div>\n\t\t\t\t\t        \n\t\t\t\t\t\n\t\t\t\t\t\n\t\t\t\t\t      \t\t\t\t\t\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"updated\"><\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/div>\n<\/section>","protected":false},"excerpt":{"rendered":"","protected":false},"author":2,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"inline_featured_image":false},"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v19.6.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Business Associate Agreement<\/title>\n<meta name=\"description\" content=\"Pragma-IT&#039;s business associate contract per HIPAA rule.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/pragmait.com\/therapyboss\/baa\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Business Associate Agreement\" \/>\n<meta property=\"og:description\" content=\"Pragma-IT&#039;s business associate contract per HIPAA rule.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/pragmait.com\/therapyboss\/baa\/\" \/>\n<meta property=\"og:site_name\" content=\"therapyBOSS\" \/>\n<meta property=\"article:modified_time\" content=\"2022-04-05T19:02:25+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/pragmait.com\/therapyboss\/baa\/\",\"url\":\"https:\/\/pragmait.com\/therapyboss\/baa\/\",\"name\":\"Business Associate Agreement\",\"isPartOf\":{\"@id\":\"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/#website\"},\"datePublished\":\"2022-03-30T16:12:10+00:00\",\"dateModified\":\"2022-04-05T19:02:25+00:00\",\"description\":\"Pragma-IT's business associate contract per HIPAA rule.\",\"breadcrumb\":{\"@id\":\"https:\/\/pragmait.com\/therapyboss\/baa\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/pragmait.com\/therapyboss\/baa\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/pragmait.com\/therapyboss\/baa\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"BAA\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/#website\",\"url\":\"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/\",\"name\":\"therapyBOSS\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Business Associate Agreement","description":"Pragma-IT's business associate contract per HIPAA rule.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/pragmait.com\/therapyboss\/baa\/","og_locale":"en_US","og_type":"article","og_title":"Business Associate Agreement","og_description":"Pragma-IT's business associate contract per HIPAA rule.","og_url":"https:\/\/pragmait.com\/therapyboss\/baa\/","og_site_name":"therapyBOSS","article_modified_time":"2022-04-05T19:02:25+00:00","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/pragmait.com\/therapyboss\/baa\/","url":"https:\/\/pragmait.com\/therapyboss\/baa\/","name":"Business Associate Agreement","isPartOf":{"@id":"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/#website"},"datePublished":"2022-03-30T16:12:10+00:00","dateModified":"2022-04-05T19:02:25+00:00","description":"Pragma-IT's business associate contract per HIPAA rule.","breadcrumb":{"@id":"https:\/\/pragmait.com\/therapyboss\/baa\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/pragmait.com\/therapyboss\/baa\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/pragmait.com\/therapyboss\/baa\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/"},{"@type":"ListItem","position":2,"name":"BAA"}]},{"@type":"WebSite","@id":"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/#website","url":"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/","name":"therapyBOSS","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/ec2-52-26-225-185.us-west-2.compute.amazonaws.com\/therapyboss\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/pages\/2774"}],"collection":[{"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/comments?post=2774"}],"version-history":[{"count":27,"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/pages\/2774\/revisions"}],"predecessor-version":[{"id":2989,"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/pages\/2774\/revisions\/2989"}],"wp:attachment":[{"href":"https:\/\/pragmait.com\/therapyboss\/wp-json\/wp\/v2\/media?parent=2774"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}