Approved

Approved Healthcare AI Vendors

Healthcare AI vendors meeting VNDRIQ's baseline governance and compliance standards. All vendors require BAA execution and organizational controls before processing PHI.

10 vendors found

Annalise.ai

Medical Imaging AI

Approved

Annalise.ai is a global medical imaging AI company that develops comprehensive clinical decision support solutions for radiology, specifically focusing on chest X-rays and non-contrast head CT scans to identify time-sensitive and incidental findings.

BAA: Available for clinical deployments in the United States; required for partnerships with US health systems like Mass General Brigham.PHI Risk: LowHIPAA Risk: Low
View Profile

Bayesian Health

Clinical Intelligence AI

Approved

Bayesian Health is a clinical intelligence platform that integrates with electronic medical records (EMR) to provide real-time, predictive AI signals for early detection of clinical deterioration, including sepsis.

BAA: Standard for enterprise healthcare agreementsPHI Risk: HighHIPAA Risk: Medium
View Profile

CARPL.ai

Medical Imaging AI

Approved

CARPL.ai is a vendor-neutral enterprise imaging AI platform and marketplace that enables healthcare providers to test, deploy, and monitor third-party radiology AI applications through a single interface and integration point.

BAA: Available upon requestPHI Risk: MediumHIPAA Risk: Low
Verified 2026-08-31View Profile

Carta Healthcare

Clinical Intelligence AI

Approved

Carta Healthcare is a clinical data management company that provides an AI-powered platform for clinical data abstraction, registry management, and real-world evidence generation.

BAA: Available upon request for healthcare clientsPHI Risk: MediumHIPAA Risk: Low
Verified 2026-08-31View Profile

CephX

Orthodontic AI

Approved

CephX is a cloud-based, AI-powered platform developed by Orca Dental AI that automates cephalometric analysis and orthodontic imaging workflows for dental and orthodontic practitioners.

BAA: Available via their websitePHI Risk: MediumHIPAA Risk: Low
Verified 2026-09-30View Profile

DeepHealth

Medical Imaging AI

Approved

DeepHealth is a subsidiary of RadNet, Inc. that provides AI-powered health informatics and radiology solutions, including breast, prostate, neuro, and lumbar imaging tools, unified under the DeepHealth OS platform.

BAA: Available for enterprise customersPHI Risk: MediumHIPAA Risk: Medium
Verified 2026-08-31View Profile

Gleamer

Medical Imaging AI

Approved

Gleamer is a medical technology company that develops AI-powered software for radiology, specifically focusing on fracture detection (BoneView), chest X-ray analysis (ChestView), and bone metrics.

BAA: Available upon request for enterprise customersPHI Risk: MediumHIPAA Risk: Medium
Verified 2026-08-31View Profile

Nanox.AI

Medical Imaging AI

Approved

Nanox.AI is a subsidiary of Nano-X Imaging that provides a suite of FDA-cleared AI-based algorithms designed to analyze routine medical CT scans for incidental findings, including cardiac (coronary artery calcium) and musculoskeletal (vertebral compression fractures) conditions.

BAA: Standard BAA available for healthcare customersPHI Risk: MediumHIPAA Risk: Medium
View Profile

ScreenPoint Medical

Medical Imaging AI

Approved

ScreenPoint Medical provides Transpara, an AI-powered decision support and detection software for 2D and 3D mammography (Digital Breast Tomosynthesis). It identifies suspicious soft-tissue and calcification lesions and provides a cancer suspiciousness score to assist radiologists in screening and diagnosis.

BAA: Available for clinical deployments in the United States.PHI Risk: HighHIPAA Risk: Medium
View Profile

SOTA Cloud

Dental AI Infrastructure

Approved

SOTA Cloud is a cloud-based dental imaging platform that integrates with various dental sensors, practice management systems, and third-party AI diagnostic tools to streamline clinical workflows and image management.

BAA: Available upon requestPHI Risk: HighHIPAA Risk: Low
View Profile

Important

Approval Summary & Key Considerations

BAA Still Required

Every Approved vendor still requires a signed, current Business Associate Agreement before PHI is processed or shared.

Verify Current Terms

Approval reflects VNDRIQ's review at time of last verification. Always confirm current vendor terms, policies, and certifications directly.

Ongoing Governance

Approved status does not eliminate organizational governance obligations. Staff training, access controls, and periodic reviews remain required.

VNDRIQ Framework

Approval Methodology

Seven scoring categories evaluated during every VNDRIQ vendor assessment.

Security Controls

Encryption, access controls, SOC 2/ISO certifications, and infrastructure security posture.

Compliance Readiness

HIPAA documentation, audit capabilities, regulatory alignment, and compliance program maturity.

BAA Availability

Business Associate Agreement availability, terms quality, and data processing agreement coverage.

Governance Controls

Admin controls, role management, audit logging, and organizational oversight capabilities.

Data Management

Data retention policies, deletion capabilities, storage location, and subprocessor disclosure.

Risk Transparency

Vendor transparency regarding AI training practices, data usage policies, and breach notification.

Operational Maturity

Vendor stability, healthcare market experience, SLA commitments, and enterprise support readiness.

Common Questions

Frequently Asked Questions