2-Minute HIPAA Readiness Quick Check
Answer ten practical questions. Your score is an initial planning signal only; it does not certify compliance or replace a risk analysis, legal review, penetration test, or professional audit.
Do not enter PHI. Assessment answers are not submitted or retained by this tool and clear after five minutes.

Answer all ten questions
Choose Yes only when the activity is current and supported by evidence. The score updates immediately, shows how much of the checklist applies, and will not turn green when a critical control is reported missing or uncertain.
Do not enter PHI, patient names, credentials, or incident details. Assessment answers are processed in your browser and are not submitted to or retained by this tool. The website may use consent-controlled analytics, but the complete assessment form and results are explicitly masked from Microsoft Clarity session recording. This assessment session clears after five minutes.
A green score is the beginning of verification
Strong answers should be tested against policies, screenshots, access lists, risk records, backup results, audit logs, vendor agreements, incident exercises, and technical configuration. A scan can identify technical vulnerabilities, but a scan alone cannot establish HIPAA compliance.
For a comprehensive questionnaire, use the full HIPAA Security Readiness Assessment. For a concise evidence list, use the HIPAA Security Checklist. When you need independent evidence review, request a HIPAA readiness conversation.