HIPAA Business Associate Agreement

Rinovo AI, operated by Myra Solutions LLC

When you need a BAA

If you are a healthcare provider (covered entity) or a business associate of a covered entity — including dental practices, medical clinics, chiropractors, veterinarians treating service animals for humans, and any practice subject to HIPAA — and you use Rinovo AI to handle protected health information (PHI), United States federal law (45 CFR § 164.504(e)) requires a signed Business Associate Agreement between your organization and Rinovo AI before any PHI is transmitted.

PHI includes anything that could identify a patient combined with information about their health, treatment, or payment — for example names plus appointment dates, or phone numbers plus diagnosis codes.

What the BAA covers

Uses and disclosures: Rinovo AI will only use PHI to provide the AI voice agent, SMS, and appointment-management services you subscribe to.

Safeguards: Administrative, physical, and technical safeguards per 45 CFR §§ 164.308, 164.310, 164.312. See our Security page for specifics.

Subcontractors: Rinovo AI will obtain a signed BAA from every subcontractor with potential access to your PHI (Supabase, Vapi AI, Twilio, AWS).

Breach notification: Rinovo AI will notify you of any breach of unsecured PHI within 30 days of discovery, per 45 CFR § 164.410.

Access and accounting: You can request a copy or accounting of the PHI we process on your behalf at any time.

Termination: On termination, Rinovo AI will return or destroy all PHI in our possession as technically feasible. Data we cannot return or destroy will be extended the same protections.

How to request a BAA

  1. Email info@myrasolutionsllc.com with subject line BAA Request.
  2. Include your legal entity name, practice NPI (if applicable), contact name and title, and the Rinovo AI account email.
  3. We will send a draft BAA within one business day. Execution is via DocuSign or mutually-agreed electronic signature.
  4. Once executed, we enable the HIPAA mode flag on your account — encrypted transcripts, PHI redaction in logs, extended audit retention, and BAA-compliant subprocessor paths.

Who we contract with

Our legal counterparty is Myra Solutions LLC, a Texas limited liability company (EIN 92-2304926), registered address 16312 Garden Dr, Celina, TX 75009. Rinovo AI is a trade name of Myra Solutions LLC.

Limitations & caveats

The BAA governs our relationship as a business associate. It does not convert Rinovo AI into a HIPAA-covered entity and does not relieve your organization of its obligations as the covered entity. You remain responsible for obtaining patient authorization where required (e.g., marketing SMS beyond transactional appointment messages).

Rinovo AI is HIPAA-ready but is not SOC 2 Type II certified yet (SOC 2 Type I in progress). Customers in regulated environments that require SOC 2 Type II should contact us about timeline and interim safeguards.

© 2026 Myra Solutions LLC. Questions? Write to info@myrasolutionsllc.com.