Handle HIPAA privacy, security, PHI, and breach compliance tasks correctly.
Copy the install command and let the AI configure it · recommended for beginners
Please install the "hipaa-compliance" skill from askskill: 1. Download https://raw.githubusercontent.com/affaan-m/ECC/main/skills/hipaa-compliance/SKILL.md 2. Save it as ~/.claude/skills/hipaa-compliance/SKILL.md 3. Reload skills and tell me it's ready
Review this patient data handling workflow against HIPAA requirements. Identify steps involving PHI, flag compliance risks, and recommend fixes with emphasis on minimum necessary use, access controls, and audit logs.
A HIPAA risk review listing PHI touchpoints, compliance issues, and prioritized remediation actions.
Create a HIPAA review checklist for signing a Business Associate Agreement with a third-party vendor, covering responsibilities, PHI use restrictions, incident notification, subcontractor requirements, and post-termination data handling.
A structured BAA review checklist for legal, procurement, and security teams to use together.
Assume a US healthcare provider experienced a data breach involving PHI. Based on HIPAA, outline incident severity assessment, initial response steps, notification checkpoints, and the evidence and records that should be preserved.
A HIPAA-oriented breach response framework to guide fast compliance decision-making.
Use this as the HIPAA-specific entrypoint when a task is clearly about US healthcare compliance. This skill intentionally stays thin and canonical:
healthcare-phi-compliance remains the primary implementation skill for PHI/PII handling, data classification, audit logging, encryption, and leak prevention.healthcare-reviewer remains the specialized reviewer when code, architecture, or product behavior needs a healthcare-aware second pass.security-review still applies for general auth, input-handling, secrets, API, and deployment hardening.Treat HIPAA as an overlay on top of the broader healthcare privacy skill:
healthcare-phi-compliance for the concrete implementation rules.healthcare-reviewer if the task affects patient safety, clinical workflows, or regulated production architecture.User request:
Add AI-generated visit summaries to our clinician dashboard. We serve US clinics and need to stay HIPAA compliant.
Response pattern:
hipaa-compliancehealthcare-phi-compliance to review PHI movement, logging, storage, and prompt boundarieshealthcare-reviewer if the summaries influence clinical decisionsUser request:
Can we send support transcripts and patient messages into our analytics stack?
Response pattern:
healthcare-phi-compliancehealthcare-reviewerhealthcare-emr-patternshealthcare-eval-harnesssecurity-reviewCreate, configure, and refine Hookify rules and syntax patterns.
Conduct multi-source web research and produce cited, source-attributed reports.
Process documents with OCR, conversion, extraction, redaction, signing, and form filling.
Design security and risk controls for autonomous trading agents with transaction authority
Build polished React and Next.js animations with reusable production-ready patterns.
Check live messages, recover recent codes, and verify the exact source inspected.
Trigger compliant patient task workflows through natural language for faster healthcare operations.
Scan schema metadata to classify PHI and assess HIPAA-ready migrations.
Query US compliance regulations like HIPAA, CCPA, and SOX directly.
Design compliant PHI and PII protection patterns for healthcare applications.
Manage identity, permissions, auditing, and recall for healthcare AI agents.
Provides guarded FHIR access with redaction, auditing, and tenant isolation.