90 Days Gen AI Risk Trial -Start Now
Book a demo
Healthcare Automation·www.sully.ai

Sully

Sully.ai is an AI-driven medical assistant designed to automate administrative tasks in healthcare, enhancing efficiency from pre-visit screenings to post-visit operations with integration into electronic health records and compliance with HIPAA.

Risk Score
Low
3/10

Independent assessment across data handling, compliance, security and transparency.

Risk factors

3
  • HIPAA compliant, ensuring patient data protection
  • Automates administrative tasks with strong privacy controls
  • Integrates with EHRs but limits data exposure

Recommendations

5
  • Require signed BAA before any PHI is processed
  • Verify HIPAA compliance claims independently
  • Review subprocessors handling PHI
  • Audit EHR integration access scopes
  • Establish retention and deletion controls

Data handling

Storage
PHI stored on HIPAA-compliant infrastructure per vendor
Retention
Per BAA and healthcare customer agreements
Training on inputs
Vendor states HIPAA compliance; training policy not fully public