Skip to content

Latest commit

 

History

History
63 lines (45 loc) · 1.99 KB

File metadata and controls

63 lines (45 loc) · 1.99 KB
layout post
date 2026-06-13
lastchange 26-06-13 v003 HIPPA roles @hippa.md
url https://bomonike.github.io/hippa
file hippa
title HIPPA
excerpt How to use Prometheus and Grafna for observability bashboards and alerts based on highly secure US HIPPA (Health Information Portability Act) saudit requirements
tags
AI
production
macos
image
feature credit creditlink
comments true
created 2026-05-19

hippa.png {{ page.excerpt }} {% include _toc.html %}

{% include whatever.html %}

Audit frameworks

23 global audit frameworks:

(NIST AI RMF, EU AI Act, ISO/IEC 42001, HIPAA, GDPR, and more),

The Adobe corporation comadress them all in a single set of controls in a pdf file: https://www.adobe.com/trust/compliance/adobe-ccf.html

Implementation Principals and Artifacts

https://overt.is (Open Standard for Runtime Trust in AI Systems)

to produce independent, tamper‑evident proof that those controls actually executed

  1. Sample configuration settings and feature flags
  2. CLI script to install Prometheus and Grafana
  3. Troubleshooting and ops/security incident (CASB/SIEM) response

Why HIPPA with Observability?

  • Authentication rules ...
  • Auto-logoff after 3 minutes
  • 6 year data retention
  • Every attestation is signed with an Ed25519 key and verifiable months later with openssl.
  • Storage of IP address and time stamps on every action
  • Tracing
  • Management triggers and alerts

enacted during the Clinton While House years.

References:

  1. https://www.youtube.com/watch?v=DlzkIjhJ18o&pp=ugUEEgJlbg%3D%3D

  2. https://www.youtube.com/watch?v=DlzkIjhJ18o 12 Self-Hosted Apps to Finally Quit Big Tech.