Medication Safety
MedAware Vendor Risk Profile
MedAware provides an AI-powered medication safety monitoring platform that utilizes machine learning and outlier detection to identify preventable medication-related risks, such as prescription errors and adverse drug events, throughout the patient journey [MedAware | Providing A Safety Layer Within Health Data Systems](https://www.medaware.com/) [MedAware - Crunchbase Company Profile & Funding](https://www.crunchbase.com/organization/medaware).
Risk Score
/100
AI Trust
/100
Compliance Overview
HIPAA Compatible
Review Required
BAA Available
Conditional
Hosting Model
—
Healthcare Focused
Yes
Approval Status
Restricted / Review Required
Risk Level
Elevated Risk
Last Reviewed
2026-08-18
Last Verified
Verification pending
Review Frequency
Quarterly
Verification reflects VNDRIQ's latest automated source check. Editorial review is a separate human assessment.
AI & Data Policies
AI Training Policy
Not Verified
Data Retention Policy
Not Verified
Support Access Risk
—
Approved Use Cases
Medication safety monitoring and clinical decision support for pharmacists and physicians within EHR workflows to detect anomalous prescriptions [MedAware Partners with athenahealth's Marketplace Program](https://www.prnewswire.com/news-releases/medaware-partners-with-athenahealths-marketplace-program-to-provide-clinicians-with-an-effective-medication-safety-monitoring-system-301357991.html).
Restricted Use Cases
Requires enterprise-level security review and private BAA negotiation; no public SOC2, HITRUST, or ISO 27001 attestations are currently available [MedAware: capabilities and pricing | AI Health Index](https://aihealthindex.io/vendors/medaware).
Deployment & Data Residency
Deployment Type
SaaS / API-integrated
Model Type
—
Deployment Environment
—
Hosting Regions
—
Available Regions
—
Data Residency
—
Customer Data Residency Options
—
Cross-Border Data Transfer
—
Data Residency Controls
—
Security & Compliance
SOC 2
Not Verified
ISO 27001
Not Verified
ISO 42001
—
HIPAA Documentation
—
Encryption
Not Verified
SSO
Not Verified
MFA
Not Verified
Private Networking
—
Private Endpoints
—
Subprocessors
—
Incident Notifications
—
Security Whitepaper
—
Executive Summary
Primary Use Cases
Key Procurement Considerations
Vendor Trust Score
Limited Trust Data
6
/100
Informational framework based on publicly available and registry data. Not a certification or guarantee. Asterisks indicate categories with limited registry data.
Security & Compliance Dashboard
Standardized view of available registry security information. Not Verified indicates the registry has no documented data.
AI Governance Maturity
Minimal governance documentation; early-stage controls.
Assessed Indicators
Procurement Risk Considerations
Informational considerations for procurement evaluation, not definitive ratings.
Governance Maturity
Foundational
Security Readiness
0/100 security controls
Compliance Readiness
0/100 compliance documentation
Integration Complexity
API not verified — verify integration path
Operational Complexity
Not Verified
Vendor Transparency
0/100 transparency
Healthcare Experience
Healthcare focus not verified
Documentation Completeness
0/100 governance docs
Vendor Lifecycle & Change History
Available registry milestones. Detailed change tracking expands as the registry matures.
Profile Updated
2026-08-26
Last Registry Review
2026-08-18
Registry Added
2026-08-18
Regulated Use Assessment
Healthcare
Healthcare Focused
Yes
HIPAA Compatibility
Review Required
BAA Availability
Conditional
Financial Services
SOC 2
Not Verified
ISO 27001
Not Verified
VNDRIQ does not classify vendors as HIPAA Compliant, SEC Compliant, or FINRA Approved unless official evidence exists. Vendor suitability depends on each organization's governance requirements, contractual obligations, deployment model, risk tolerance, and applicable regulations.
Review Notes
MedAware lacks public-facing documentation regarding HIPAA compliance, BAA availability, and security certifications. While it is integrated into major EHRs like Epic and athenahealth, which implies private security vetting by those partners, no public attestations (SOC2, HITRUST) were found [MedAware: capabilities and pricing | AI Health Index](https://aihealthindex.io/vendors/medaware).
Quick Facts
Category
Medication Safety
Headquarters
Raanana, Israel
Year Founded
2012
Deployment Type
SaaS / API-integrated
Website
Risk Score
/100
AI Trust Score
/100
Last Reviewed
2026-08-18
Last Verified
Verification pending
Request Vendor Evaluation
Get a structured risk assessment and governance recommendation for MedAware.
Vendor Governance
Approval Tier
Restricted / Review RequiredBAA Verification
Not StartedPHI Exposure
HighAI Risk Level
MediumLast Review
2026-08-18
Next Review Due
2026-11-18
Verification Status
Pending Review
Next Review Date
2026-11-18
Review Frequency
Quarterly
Vendor Completeness Score
100/100
CompleteWebsite Present
Category Assigned
Approval Status Present
BAA Status Present
PHI Exposure Classified
Risk Level Present
Review Date Present
Verification Notes Present
Trust & Transparency
Last Reviewed Date
2026-08-18
Review Frequency
Quarterly
Vendor Verification Process
Every vendor is reviewed against public documentation, trust centers, and contract evidence before classification.
Editorial Independence Statement
VNDRIQ classifications are independent of vendor relationships. Ratings reflect available evidence and governance risk only.
Registry Update Policy
The registry is reviewed on a monthly cycle. All updates are editor-reviewed before publication; no automated public data changes.
Editorial Methodology
Vendors are evaluated across compliance, security, AI governance, and enterprise readiness. Each review follows a standardized 12-point checklist covering website, HIPAA, BAA, security, compliance, AI capabilities, deployment, pricing, product changes, ownership, integrations, and documentation.
Trust Signals
Vendor Benchmarking
Comparison against registry averages where supported. Benchmarks are informational and based on registry data.
Related Authority Network
Ask VNDRIQ About This Vendor
Ask questions about MedAware using registry data.
Ask VNDRIQ About Healthcare AI Vendors
Explore healthcare AI vendors, compare capabilities, identify documentation gaps, and understand procurement and governance considerations using information from the VNDRIQ registry.
VNDRIQ provides vendor intelligence and educational procurement support. Responses do not constitute legal, medical, cybersecurity, compliance, or procurement advice. Vendor information may be incomplete, vendor-reported, under review, or subject to change.
Do not enter patient information, PHI, passwords, or sensitive data.
VNDRIQ vendor ratings are for operational risk screening and governance support. Final approval should include legal, compliance, security, and contract review before any PHI or regulated data is shared. Risk classifications are based on available public information and internal review at time of last verification.