OpenAI adds direct BAA enrollment for eligible API organizations
The new setup flow requires established API usage and an authorized organization administrator.

OpenAI added enrollment for its standard Business Associate Agreement inside the API Platform on October 5, according to its changelog. Eligible organization administrators can now enable HIPAA compliance support from organization settings.
The Help Center says enrollment requires established API usage, but no enterprise agreement. Administrators must have authority to accept the agreement. Custom terms still use the manual request process.
Coverage requirements still apply
Accepting the BAA does not by itself make an application HIPAA compliant. The support setting cannot be disabled through the API Platform after activation.
Covered API use requires Modified Retention unless OpenAI specifies otherwise. The announcement changes enrollment for eligible API customers, with separate BAA arrangements for other products.
Related coverage explains OpenAIโs optional API text watermarking.
Illustrative hospital file photograph by adrian vieriu on Pexels, published March 31, 2022 under the Pexels License. The image does not show an OpenAI customer or implementation.



