All Comparisons/Analytics

VNDRIQ — Category Comparison

Analytics Vendor Comparison

Web analytics, data analytics, and business intelligence platforms.

Typical PHI Exposure

Medium to High — may capture URL parameters, form data, or IP addresses.

Common Risks

OCR guidance on tracking pixels. Data sharing with ad networks.

Recommended Approach

Standard analytics tools restricted. Legal and compliance review required.

Practice by Numbers

Analytics

70

Score

Approved With RestrictionsVerify Directly
Privacy59
Governance73
Healthcare59
AI Risk90
MediumLow

Jarvis Analytics

Analytics

70

Score

Approved With RestrictionsVerify Directly
Privacy59
Governance73
Healthcare59
AI Risk90
MediumLow

Medallia

Analytics

51

Score

Conditional / Verify BAAVerify Directly
Privacy42
Governance56
Healthcare52
AI Risk55
HighMedium

Domo

Analytics

51

Score

Conditional / Verify BAAVerify Directly
Privacy42
Governance56
Healthcare52
AI Risk55
HighMedium

Practice by Numbers

Analytics

43

Score

Conditional / Verify BAAVerify Directly
Privacy17
Governance51
Healthcare32
AI Risk70
CriticalLow

Dental Intelligence

Analytics

37

Score

Conditional / Verify BAAVerify Directly
Privacy17
Governance51
Healthcare32
AI Risk46
CriticalMedium

Jarvis Analytics

Analytics

37

Score

Conditional / Verify BAAVerify Directly
Privacy17
Governance51
Healthcare32
AI Risk46
CriticalMedium

Google Analytics 4

Analytics

24

Score

Not RecommendedBAA Not Found
Privacy28
Governance15
Healthcare24
AI Risk30
HighHigh

Meta Pixel (Healthcare)

Analytics

18

Score

Not RecommendedBAA Not Found
Privacy13
Governance15
Healthcare24
AI Risk21
CriticalHigh

Executive Summary

This category contains 9 vendors in the VNDRIQ registry. Practice by Numbers has the highest VNDRIQ score (70) in this category. PHI exposure in this category is typically medium to high — may capture url parameters, form data, or ip addresses.

9

Total Vendors

2

Approved / Restricted

7

BAA Verification Needed

Governance Considerations for Analytics

Standard analytics tools restricted. Legal and compliance review required.

Common risks include: OCR guidance on tracking pixels. Data sharing with ad networks.

All vendors in this category should be reviewed for BAA status before processing PHI.

Establish a regular review cadence for all Analytics tools.

Questions to Ask Before Approval

01

Has the vendor executed a Business Associate Agreement (BAA) with your organization?

02

Does the vendor use customer data to train AI models? Can you opt out?

03

Where is PHI stored, processed, and transmitted?

04

What data retention and deletion policies apply to your PHI?

05

Has the vendor undergone a third-party HIPAA or SOC 2 audit?

06

What is the vendor's incident response and breach notification process?

07

Does the vendor offer audit logging for PHI access?

08

What subprocessors have access to PHI through this vendor?

Recommended For

Healthcare organizations evaluating vendors in this category for PHI workflows

DSOs and dental groups standardizing vendor governance across locations

Compliance teams conducting annual vendor risk reviews

IT directors building HIPAA-aligned vendor registries

PE-backed healthcare operators implementing governance frameworks

Healthcare administrators assessing AI tool adoption risk

Request Vendor Evaluation

Get a structured risk assessment for any vendor.

Request Benchmark Report

Compare vendors across your full stack.

Book Governance Assessment

Talk to a VNDRIQ governance specialist.