Under HIPAA, information about a person’s health or healthcare services is classified as Protected Health Information (PHI).
If you’re using your Google account and booking sessions using your Google Calendar, you’ll need to make sure that you are HIPAA compliant. This can be done electronically, i.e. online, to ensure that you are handling PHI safely and securely, by signing a BAA or Business Associate Agreement (BAA) with Google.
If you’re working at an organization the same applies. Administrators must review and accept a BAA before using Google services with PHI.
Google has also published a Google Workspace and Cloud Identity HIPAA Implementation Guide to help customers understand how to organize data on Google services when handling PHI. This guide is intended for employees in organizations who are responsible for HIPAA implementation and compliance with Google Workspace and Cloud Identity.