Loading…
Loading…
Solo therapists and group practices buy software on trust, not features. WorkflowKits sets up Jotform (the friendliest compliant form tool in the market) the way it should have been set up in the first place. BAA in place, intake that actually fits how you work, no PHI bleeding into Zapier or your email inbox.
Yes. Jotform is HIPAA-compliant on the Gold plan ($99/month billed annually, $129 monthly) and Enterprise with a signed BAA, which makes it one of the most affordable HIPAA-grade form tools for solo and small group therapy practices. The BAA covers intake submissions, consent forms, file uploads, and PDF generation. Every other tool that touches a submission (your scheduling app, EHR, or Zapier flows) needs its own BAA. WorkflowKits sets the full loop up for you.
Source: WorkflowKits /hipaa/therapy : by Buri (Mustafa Burak Ilter), former Jotform engineer (2020-2025).
Each kit deploys into your own Jotform HIPAA account. No middleware, no platform fees, no vendor lock-in. Pricing covers the build and a window of support.
Mental health intake flagship: sliding-scale fees, insurance, telehealth preference, no-show policy, consent.
View the kitPre-session telehealth flow: identity verification, tech setup, PHQ-9/GAD-7 screening, e-consent.
View the kitThe full HIPAA patient intake foundation: branching history, insurance, consent, EHR export.
View the kitInsurance card capture and eligibility intake routed to billing without exposing PHI.
View the kitThe Jotform HIPAA plan covers the platform side. The other three pillars are on you - and they are where almost every audit finding comes from.
An illustrative walkthrough of how a typical 6-therapist group practice sets up Jotform end-to-end: HIPAA plan, BAA, intake by therapist and modality, consent, telehealth pre-visit, and EHR-ready export. Composite, not a real client.
Read the noteIf you handle protected health information, Jotform's HIPAA plan is the right starting point, but the plan alone doesn't make your workflow compliant. Here's what the plan covers, what it doesn't, and what most teams still get wrong.
Read the noteThe Jotform HIPAA plan covers Jotform. It does not cover what happens to a submission once it lands in Zapier, Google Sheets, Slack, or your CRM. Here is the integration-by-integration verdict from a Jotform HIPAA expert who built the integration codepath.
Read the noteTwelve items to check before any Jotform form that handles PHI goes live. If any of these are unchecked, the workflow is not ready. Save the page or copy the list into your decision log.
Read the noteGoogle Forms on a free Gmail account is not HIPAA compliant. With a Google Workspace BAA and specific configuration changes, it can be made compliant. But it lacks clinical workflow features, e-signature, and integration audit trails. Here is the honest breakdown.
Read the noteMost form builders that advertise HIPAA compliance are telling you about one thing: they signed a BAA. A BAA is necessary but nowhere near sufficient. Here is what a compliant form setup actually requires, from a former Jotform engineer.
Read the noteJotform email notifications fail for six common reasons. Here is how to diagnose and fix each one in under 10 minutes.
Read the noteYes. The Gold plan starts at $99/month billed annually ($129 monthly). That is dramatically cheaper than full EHR platforms like SimplePractice or TherapyNotes if all you need is intake, consent, and a few forms. Many solo practices use Jotform for the form layer and a lightweight EHR for clinical notes.
Yes. Jotform handles intake and consent at a friendlier UX and lower cost than EHR-native intake forms; the data exports to your EHR via CSV, JSON, or direct API where the EHR supports it. We design the integration so PHI never touches a non-compliant tool in transit.
Yes: identity verification, technology check, telehealth e-consent, platform preference, and screening (PHQ-9, GAD-7) are all native to the telehealth pre-visit kit. They run as conditional sections on the main intake or as a dedicated pre-session form.
We route by therapist, by location, or by service type. Each therapist gets their own intake link with the right consent and policy attached, while submissions land in a single back-office view your office manager can triage.
Yes. That is the whole point. The setup includes the signed BAA, audited integrations, PHI-stripped notifications, 2FA, and a decision log you can hand to an auditor. We do not ship a setup we would not run our own family's data through.
Want help with this? . Email me. We scope the engagement (intake, consent, telehealth flow, EHR export, BAA + integration audit), send a fixed-price proposal, and ship in two weeks for most solo and small group practices.
Free 20-minute call. Bring your current Jotform setup (or a blank account); leave with a straight answer about what compliance actually requires for your practice.