Server data from the Official MCP Registry
HIPAA healthcare compliance assessment tools for AI agents. Capabilities: assess safeguards,...
HIPAA healthcare compliance assessment tools for AI agents. Capabilities: assess safeguards,...
The server has multiple critical security issues that make it unsuitable for production use. It relies on external, undeclared dependencies (auth_middleware, compliance_neural) that are not in pyproject.toml and located in a home directory path, creating supply chain and availability risks. The authentication mechanism is weak (simple string comparison of MEOK_API_KEY environment variable with no salting or hashing), and the server lacks proper input validation, error handling, and has suspicious architectural patterns including external API calls for attestation signing and neural network predictions. The codebase also exhibits quality issues including broad exception handling and missing validation on date inputs. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
4 files analyzed · 15 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-hipaa-compliance-mcp": {
"args": [
"hipaa-compliance-mcp"
],
"command": "uvx"
}
}
}From the project's GitHub README.
Automate HIPAA healthcare compliance for AI systems handling PHI.
Administrative safeguards · Physical safeguards · Technical safeguards · BAA templates · Breach notification · Minimum necessary rule
Penalties: up to $2.1M per violation category per year.
Healthcare AI is the fastest-growing sector for ML deployment — and the most regulated. Every AI system touching Protected Health Information (PHI) must comply with the HIPAA Security Rule, Privacy Rule, and Breach Notification Rule. Business Associate Agreements (BAAs) are required for every vendor in the chain.
This MCP assesses your AI system against all three HIPAA safeguard categories, checks PHI handling workflows, generates BAA templates, and verifies breach notification readiness.
pip install hipaa-compliance-mcp
| Tool | Safeguard | What it does |
|---|---|---|
assess_administrative | Administrative | Security management, workforce training, contingency plans |
assess_physical | Physical | Facility access, workstation security, device controls |
assess_technical | Technical | Access controls, audit controls, transmission security |
check_phi_handling | Privacy Rule | PHI use/disclosure, minimum necessary, de-identification |
generate_baa | — | Business Associate Agreement template |
assess_breach_readiness | Breach Rule | 60-day notification, risk assessment, documentation |
run_full_audit | All | Complete HIPAA readiness assessment |
sign_attestation | — | HMAC-SHA256 signed compliance certificate |
| Tier | Price | What you get |
|---|---|---|
| Free | £0 | 10 calls/day |
| Pro | £199/mo | Unlimited + HMAC-signed attestations |
| Enterprise | £1,499/mo | Multi-tenant + co-branded reports |
POST https://meok-attestation-api.vercel.app/sign
GET https://meok-attestation-api.vercel.app/verify/{cert_id}
MIT
Be the first to review this server!
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
by Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption