Before you can upload patient documents to CaseGoGo, you must accept the Provider Agreement and Business Associate Addendum (BAA). This is a legal requirement under HIPAA.
What you are agreeing to
- You will only upload PHI for patients you have the lawful right to share information about.
- You will safeguard your account credentials and notify us of any suspected compromise.
- You will use minimum-necessary PHI when uploading.
- You agree to the mandatory binding arbitration and class action waiver in Section 14.
- You will comply with HIPAA, FIPA, and applicable Florida Board of Chiropractic Medicine rules.
What CaseGoGo commits to
- All PHI is encrypted at rest (AES-256, AWS KMS) and in transit (TLS 1.2+).
- Every document access is logged with user, IP, and timestamp.
- We will notify you of any breach within applicable HIPAA and Florida timelines.
- We have a signed BAA with AWS, our PHI storage sub-processor.
Full agreement: The complete Provider Agreement and BAA is available at
/provider-agreement. Please read it before accepting.
Patient Consent (your responsibility)
By accepting, you confirm that each patient whose PHI you upload has either:
- Signed a HIPAA-compliant authorization permitting disclosure of their medical records to the referring attorney, OR
- You have an established treatment relationship with the patient and the attorney has obtained the authorization on the patient's behalf.