---
title: Security and data | Help center | Nextvisit
description: HIPAA, BAA, audio retention, vulnerability disclosure, session timeouts, and what Nextvisit does (and never does) with PHI. Page 1 of 1.
url: "http://localhost:3000/help/category/security-and-data"
type: static
generatedAt: "2026-09-04T06:57:01.939Z"
---

Help center
# Security and data.

HIPAA, BAA, audio retention, vulnerability disclosure, session timeouts, and what Nextvisit does (and never does) with PHI.

 - [How Long Is Recorded Audio Stored? Understanding audio storage duration and security for your clinical documentation.  Updated Jul 2025](/help/audio-storage)
- [Vulnerability Disclosure Program Guidelines What we're looking for and compensation details for security researchers.  Updated Jul 2025](/help/vulnerability-disclosure)
- [Does Nextvisit provide a Business Associate Agreement (BAA)? How to request a Business Associate Agreement (BAA) for HIPAA-compliant use of Nextvisit AI.  Updated Jun 2025](/help/business-associate-agreement)
- [How does Nextvisit AI protect patient data? Encryption, security protocols, and privacy controls that protect patient information in Nextvisit AI.  Updated Apr 2025](/help/data-protection)
- [Is Nextvisit AI HIPAA compliant? Yes. How Nextvisit AI meets HIPAA privacy and security requirements for patient information.  Updated Apr 2025](/help/hipaa-compliance)
               Still stuck?
## The team is one email away.

Email hello@nextvisit.ai with the encounter ID, your workspace, and what you were trying to do. Real responses in hours, not days.
  [Email support](mailto:hello@nextvisit.ai) [Book a 15-min demo](mailto:hello@nextvisit.ai)     Live in 2 weeks or less   BAA signed by default