Q: If Formly compliant with Canadian Privacy Laws - does it meet requirements for PHIPA and PIPEDA?
I run a mental health practice and am interested in using Formly to generate intake forms to provide to clients for one of our services where our current EHR is not meeting our needs. Since these clients provide personal health information and I as the clinic owner am the PHI custodian - I need to ensure that Formly meets requirements before purchasing.
Urmi_Formly
Aug 28, 2024A: Currently we don't have certification for PHIPA, PEPIDA which you have mentioned.
Formly is compliant with GDPR. We use AWS infrastructure (Amazon servers in London, UK) and all our data is encrypted in transit and at rest. Please also refer to the Amazon GDPR Centre for more information on data security - https://aws.amazon.com/compliance/gdpr-center/
For payment forms, we don’t store any card details and all payments are completely managed through Stripe.