Verification
Coverage & HIPAA safeguards certificate
A single page your compliance officer can review before PHI moves: the safeguards we operate, the signed documents on file, and our insurance coverage. Package version 2026.1.
Safeguards in operation
Encryption in transit and at rest
PHI moves over TLS 1.2+ and is stored encrypted in our document vault; nothing is emailed as an unprotected attachment.
Role-scoped access
Every portal record is access-controlled per client account, and staff access is limited to assigned engagements.
Audit logging
Document access, downloads and administrative actions are written to an append-only audit log.
Insurance coverage
Certificates of insurance are issued on request — email info@nexacc.com and we will have the carrier send a COI naming your practice. Coverage limits are published here once the current certificate is on file, so nothing unverified appears on this page.
Signed documents on file
- Business Associate AgreementDownload signed PDF
- Encryption and Transmission Security PolicyDownload signed PDF
- Audit Logging and Disclosure Accounting PolicyDownload signed PDF
- CPA Firm Partnership AgreementDownload signed PDF
- Written Information Security Program (WISP)Download signed PDF
