Handle HIPAA privacy, security, PHI, and breach compliance tasks correctly.
Copy the install command and let the AI configure it · recommended for beginners
Please install the "hipaa-compliance" skill from askskill: 1. Download https://raw.githubusercontent.com/affaan-m/ECC/main/skills/hipaa-compliance/SKILL.md 2. Save it as ~/.claude/skills/hipaa-compliance/SKILL.md 3. Reload skills and tell me it's ready
Review this patient data handling workflow against HIPAA requirements. Identify steps involving PHI, flag compliance risks, and recommend fixes with emphasis on minimum necessary use, access controls, and audit logs.
A HIPAA risk review listing PHI touchpoints, compliance issues, and prioritized remediation actions.
Create a HIPAA review checklist for signing a Business Associate Agreement with a third-party vendor, covering responsibilities, PHI use restrictions, incident notification, subcontractor requirements, and post-termination data handling.
A structured BAA review checklist for legal, procurement, and security teams to use together.
Assume a US healthcare provider experienced a data breach involving PHI. Based on HIPAA, outline incident severity assessment, initial response steps, notification checkpoints, and the evidence and records that should be preserved.
A HIPAA-oriented breach response framework to guide fast compliance decision-making.
Use this as the HIPAA-specific entrypoint when a task is clearly about US healthcare compliance. This skill intentionally stays thin and canonical:
healthcare-phi-compliance remains the primary implementation skill for PHI/PII handling, data classification, audit logging, encryption, and leak prevention.healthcare-reviewer remains the specialized reviewer when code, architecture, or product behavior needs a healthcare-aware second pass.security-review still applies for general auth, input-handling, secrets, API, and deployment hardening.Treat HIPAA as an overlay on top of the broader healthcare privacy skill:
healthcare-phi-compliance for the concrete implementation rules.healthcare-reviewer if the task affects patient safety, clinical workflows, or regulated production architecture.User request:
Add AI-generated visit summaries to our clinician dashboard. We serve US clinics and need to stay HIPAA compliant.
Response pattern:
hipaa-compliancehealthcare-phi-compliance to review PHI movement, logging, storage, and prompt boundarieshealthcare-reviewer if the summaries influence clinical decisionsUser request:
Can we send support transcripts and patient messages into our analytics stack?
Response pattern:
healthcare-phi-compliancehealthcare-reviewerhealthcare-emr-patternshealthcare-eval-harnesssecurity-reviewDesign reliable deployment workflows, CI/CD pipelines, and production release strategies.
Orchestrate parallel AI agent workflows with dmux for faster development execution.
Helps developers follow this JavaScript repository's coding, testing, and commit conventions.
Apply modern, safe, idiomatic C++ standards for writing, review, and refactoring.
Search PubMed literature, MeSH terms, PMIDs, and citation data efficiently.
Audit, plan, and implement SEO improvements for better search visibility.
Trigger compliant patient task workflows through natural language for faster healthcare operations.
Scan schema metadata to classify PHI and assess HIPAA-ready migrations.
Query US compliance regulations like HIPAA, CCPA, and SOX directly.
Design compliant PHI and PII protection patterns for healthcare applications.
Manage identity, permissions, auditing, and recall for healthcare AI agents.
Track compliance requirements, audit readiness, and supporting documentation progress.