Overview
- Skill Key
- 1kalin/afrexai-hipaa-compliance
- Author
- 1kalin
- Source Repo
- openclaw/skills
- Version
- -
- Source Path
- skills/1kalin/afrexai-hipaa-compliance
- Latest Commit SHA
- 1fa16639230ca475994db7d3569327eddb6ffca7
HIPAA Compliance for AI Agents
Stars
0
Installs
0
Status
ACTIVE
Visibility
PUBLIC
直接复制以下提示词,发送给你的 AI 助手即可完成安装。
请先检查是否已安装 SkillHub 商店,若未安装,请根据 https://skillhub-1388575217.cos.ap-guangzhou.myqcloud.com/install/skillhub.md 安装 SkillHub 商店,然后安装 Afrexai Hipaa Compliance 技能。 若已安装,则直接安装 Afrexai Hipaa Compliance 技能。
# HIPAA Compliance for AI Agents Generate HIPAA compliance checklists, risk assessments, and audit frameworks for healthcare organizations deploying AI agents. ## What This Skill Does When activated, produce any of these deliverables based on user request: ### 1. Pre-Deployment Compliance Gate - BAA requirements checklist for AI vendors - PHI data flow mapping template - Minimum Necessary standard application guide - Risk assessment framework (45 CFR 164.308(a)(1)) ### 2. Technical Safeguards (45 CFR 164.312) **Access Controls:** - Unique service account IDs for AI agents - Emergency access procedures for system failures - 15-minute auto-logoff configuration - Role-based minimum necessary permissions **Audit Controls:** - PHI access logging (timestamp, user, action, data) - 6-year retention compliance - Anomaly detection on access patterns - AI decision audit trails **Transmission Security:** - TLS 1.3 enforcement - E2E encryption for patient comms - Certificate pinning for API connections - No PHI in URLs, query strings, or logs ### 3. AI-Specific Risk Matrix | Risk | Impact | Mitigation | |------|--------|------------| | Prompt injection → PHI leak | Critical | Input sanitization, output filtering, sandboxing | | Model training on PHI | High | BAA prohibition, single-tenant deployment | | Hallucinated medical info | Critical | Human-in-loop, confidence thresholds | | Shadow AI with PHI | High | Approved tool registry, DLP rules | ### 4. Breach Response Timeline - 0-1 hrs: Contain (disable agent, preserve logs) - 1-24 hrs: Assess scope of PHI exposure - 24-48 hrs: Document root cause, affected individuals - Within 60 days: Notify HHS + individuals + media (if 500+) - 30-90 days: Remediate, patch, retrain ### 5. Compliance by Use Case Rate each AI deployment: - Patient scheduling → Medium risk - Billing/coding → High risk - Clinical decision support → Critical risk - Patient communication → High risk - Medical records summarization → Critical risk ### 6....
# HIPAA Compliance for AI Agents Generate HIPAA compliance frameworks for healthcare organizations deploying AI automation. Covers 45 CFR 164 technical/administrative safeguards, AI-specific risks (prompt injection, PHI in training data, hallucination), breach response timelines, and penalty reference tables. Built for compliance officers, CISOs, and healthcare IT teams rolling out AI agents in 2026. ## What You Get - Pre-deployment compliance gate (7-point checklist) - Technical safeguards audit (access, audit, transmission, integrity) - AI-specific risk matrix with mitigations - Breach response timeline (0 hrs → 90 days) - Use case risk ratings (scheduling through clinical decision support) - Penalty reference with 2025 fine amounts ## Links - [Healthcare AI Context Pack — $47](https://afrexai-cto.github.io/context-packs/) - [AI Revenue Leak Calculator](https://afrexai-cto.github.io/ai-revenue-calculator/) - [AI Agent Setup Wizard](https://afrexai-cto.github.io/agent-setup/) *© 2026 AfrexAI*
heyixuan2
Bambu Lab 3D printer control and automation. Activate when user mentions: printer status, 3D printing, slice, analyze model, generate 3D, AMS filament, print monitor, Bambu Lab, or any 3D printing task. Full pipeline: search → generate → analyze → colorize → preview → open BS → user slice → print → monitor. Supports all 9 Bambu Lab printers (A1 Mini, A1, P1S, P2S, X1C, X1E, H2C, H2S, H2D).
capt-marbles
Generative Engine Optimization (GEO) for AI search visibility. Optimize content to appear in ChatGPT, Perplexity, Claude, and Google AI Overviews. Use when optimizing websites, pages, or content for LLM discoverability and citation.
carlulsoe
Local speech-to-text with NVIDIA Parakeet TDT 0.6B v3 (ONNX on CPU). 30x faster than Whisper, 25 languages, auto-detection, OpenAI-compatible API. Use when transcribing audio files, converting speech to text, or processing voice recordings locally without cloud APIs.
carlzhao007
飞书消息自动处理与进度反馈技能。安装后后台运行,监听飞书任务消息并自动创建独立进程处理。 在处理前后发送实时进度反馈(任务确认、进度百分比、完成通知)。 支持任务类型识别、智能解析、错误重试、并发控制、状态持久化。 使用场景:飞书自动化工作流、任务进度追踪、批量任务处理、需要实时反馈的场景。
cartoonitunes
BottyFans agent skill for autonomous creator monetization. Lets AI agents register, build a profile, publish posts (public, subscriber-only, or pay-to-unlock), upload media, accept USDC subscriptions and tips on Base, send and receive DMs, track earnings, and appear on the creator leaderboard. Use this skill when an agent needs to monetize content, interact with fans, manage a creator profile, handle payments in USDC, or operate as an autonomous creator on the BottyFans platform.
camopel
Local arXiv paper manager with semantic search. Crawls arXiv categories, downloads PDFs, chunks content, and indexes with FAISS + Ollama embeddings. No cloud API keys required — everything runs locally.