In Scope

What is Included

Everything You Need to Be HIPAA Compliant—Included

Server-Level Security Monitoring

Intrusion detection, malware scanning, WAF

Automated Security Patching

Server OS, PHP, WordPress core, plugin, updates

HIPAA-Compliant Security Controls

Encryption, logging, access management

SSL/TLS Certificate Management

Installation & renewal

Firewall Protection

And optional DDoS mitigation

Daily System Snapshots

With secure offsite storage for Disaster recovery

Incident Response for Security Threats

Malware removal, compromise recovery

Managed Cloud Hosting

Server provisioning, monitoring, scalable hosting

Server Uptime Monitoring & Response

Server OS, PHP, WordPress core, plugin, updates

Database Management

Encryption, logging, access management

WordPress Core Updates

Ensuring version compatibility

Routine Maintenance & Security Patching

And optional DDoS mitigation

Troubleshooting Server-side Issues

OS errors, database connection issues

Debugging Broken Site Functionality

Server OS, PHP, WordPress core, plugin, updates

Emergency Recovery Support

Site Restorations From Backup

Out of Scope

What is NOT Included

Website Performance Optimization

Custom caching configurations beyond default server-level caching.
Optimizing website images (compressing, resizing, converting formats).
Optimizing plugin settings for improved page speed or Core Web Vitals.

Web Design & Content Management

Building new pages or redesigning existing pages.
Content creation, editing, or SEO optimization.
Custom graphic design or branding.

Plugin, Theme, & PHP Code Customization

Custom plugin/theme development or modifications.
Debugging third-party premium themes or plugins (unless affecting site security).
Updating plugins/themes that are not compatible (client responsible for licensing/support).
PHP code debugging or custom PHP development beyond server configuration-level support.

Database Administration

Database administration and management beyond providing phpMyAdmin access.
Query optimization, indexing, or schema changes.

Migration Services

Free Migration – Included only with HIPAA WordPress Starter plans.
Additional Migrations – Available for other plans at an additional fee based on the size and complexity of the site.
Self-Migration Access – Customers have full access to migrate their own sites if preferred.

Business & Marketing Support

SEO, digital marketing, or analytics beyond basic security monitoring.
E-commerce configuration (WooCommerce setup, checkout flow tuning).
Third-party integrations unless explicitly included in the plan.

For services That Fall Outside of Our Managed Hosting Scope:

Billable Consultation – If it’s technical but outside of our core services, we can provide a custom quote.

Third-Party Referrals – For design, content, or marketing, we can refer trusted partners.

Client Responsibility – Some tasks must be handled by the client’s internal team or existing vendors.

HIPAA Vault

Continuous
security monitoring
24/7 HIPAA trained
support
Just $120 monthly,
HIPAA Managed

Generic Hosting

Security gaps that
fall auchs
Generic support
doesn’t speak
healthcare
$500+ monthly,
complex setup

HIPAA Vault provide less than hiring one compliance consultant for an hour

$120/month

Everything included

30-day money back guarantee

HIPAA Compliant WordPress Hosting Plans

Choose our Highly Secure, Fully Managed, HIPAA Compliant WordPress Hosting Plans

  • Monthly
  • Yearly

Essential

Fully Managed HIPAA WordPress

$120/mo

Billed monthly

Start 30-Day Free Trial
    • Light Traffic
    • 1 WP website
    • 10 GB SSD Storage
    • Editor Role

Trusted by 1000+ customers

Celebrating Real Stories of HIPAA Security Success

Big or small, our IT pros deliver ironclad HIPAA compliance services.

Jenny French

6 months ago

I truly could not be happier! Customer Service has always been VERY important to me and it was the catalyst for me choosing HIPAA Vault above competitors after seeing…

Josh Champion

a year ago

Extremely helpful getting HIPAA compliant hosting up and running for our small medical group. Tech support is very responsive, and very easy to work with. Looked at…

Ash Mohammad

8 months ago

Great service and wonderful support team. We had HIPAA Vault hosting service for a long time and we never faced any security or support issues. Thanks so much HIPAA Vault team…

Michelle L. O’Neal

3 years ago

HIPAA Vault has provided excellent customer service to my web development team. They are quick to respond to all support tickets and offer advice to keep our sites…

Henry Torres

a year ago

Excellent customer service and quick response to any inquiries. Smooth and high quality full service provider that I recommend for those looking for a solid partnership…

Annette Reid

4 years ago

HIPAA Compliance is of the most importance when it comes to Healthcare Professionals. VMRacks delivers HIPAA Compliant email and hosting to my medical clients and…

HIPAA Secure WordPress Hosting FAQ

Questions about WordPress HIPAA compliance? Give us a call at 760-290-3460!

Certifications