HIPAA & BAAs
HIPAA & BAAs
Onboarding required
HIPAA access requires onboarding with Pinnacle and a signed Business Associate Agreement (BAA). Creating an account does not complete onboarding or authorize sending protected health information (PHI).
Contact founders@pinnacle.sh to get started. Before sending PHI:
- Complete a BAA with Pinnacle.
- Work with Pinnacle to configure your team, phone numbers, credentials, and webhook destinations.
- Receive confirmation that your integration is ready for HIPAA use.
Pinnacle provides connection details during onboarding. An existing integration does not move into the HIPAA environment automatically.
Endpoint availability
Expand a group to explore supported endpoints, or select Not supported to browse endpoints in beta. Each operation links to its API reference.
When adapting API examples, use the connection details and credentials provided during HIPAA onboarding. Use synthetic data in the documentationās API playground.
Supported (63)
Not supported (32)
Messages 12 of 17 supported
Conversations ā All supported
Contacts ā All supported
Audiences ā All supported
Files and contact cards ā All supported
Webhooks ā All supported
Phone Numbers 5 of 6 supported
Brands ā All supported
Campaigns / 10DLC ā All supported
Campaigns / Toll-Free ā All supported
Status 4 of 5 supported
Handling patient information
Keep patient information out of support requests, documentation tools, brand and campaign registration, and autofill inputs. Limit access to webhook payloads, message responses, and media links to authorized people and systems.

