// Healthcare

HIPAA-compliant meeting bot API for healthcare software

MeetStream is HIPAA compliant and signs Business Associate Agreements, so healthcare software can record clinical calls, provider training and research interviews. Every recording lands in storage you own, encrypted in transit and at rest.

Zoom, Meet, TeamsYour own S3 bucketHIPAA compliant, BAA availableISO 27001 certifiedUS region by default
Overview

What healthcare teams need from a meeting bot API

Capture you can defend starts with scope, then with where each recording goes and who can reach it.

One request returns an MP4 recording, per-participant audio and video, and a transcript
Send a meeting link, and when the call ends you get all three.
Storage you own

Recordings stay in your own S3 bucket, in your own account.

Encrypted end to end

In transit and at rest, on every recording and transcript.

Audio per participant

Complete on Zoom, and speaker-attributed on Meet and Teams.

A read-only calendar link

The bot reads the schedule through the Calendar API.

The security page lists every control.

How it works

From a meeting link to your product

One request puts a bot in the call. A webhook tells you when the files are ready.

  • A named bot in the room
    People can see it, which helps with disclosure and consent.
  • Records and streams live
    Audio and video while the meeting runs, on all three platforms.
  • Events as they happen
    Participant events carry the timeline of who joined and when.
Meeting linkcreate_botone requestBot in the callrecords and streamsWebhookbot.doneYour systemstructured notes
The same five steps on every platform; only the last box is yours.
Data control

Your data stays in your account

Recordings and transcripts go straight to a bucket you own, in the region you pick.

  • Your retention, your access
    You set the rules on your own bucket, and sensitive content rests inside your boundary.
  • Thirty days otherwise
    Files stay in MeetStream storage for thirty days.
  • Regions you choose
    The United States by default, with the EU, Australia, Japan and the Middle East open.
30 days by defaultIncluded, not meteredYour own bucketEvery file, from thefirst byteYour regionUS, EU, Australia, Japanand the Middle East
Where a recording lives is a setting, not a support ticket.

Reliable speaker attribution on every recording

A clinician and a patient are named by the platform itself, and so are a trainer and a trainee or a researcher and a study participant.

PlatformWhat the bot returns
ZoomComplete, one isolated audio stream per participant
Google MeetSpeaker-attributed audio, named by the platform
Microsoft TeamsSpeaker-attributed audio, named by the platform

Names come from the call, not from a model. Speaker diarization covers the difference.

Compliance

Where MeetStream stands on healthcare compliance

MeetStream is HIPAA compliant and signs Business Associate Agreements. It is ISO 27001 certified, and SOC 2 Type 2 is under audit.

  • A BAA before PHI flows
    Sign a Business Associate Agreement with MeetStream before protected health information reaches a bot. HIPAA is shared: we cover our part under the BAA, and your application keeps its own access controls and audit trail.
  • Your security boundary
    Bring your own S3 bucket and every file lands inside it, under your retention rules.
  • Your choice of transcription
    Deepgram, AssemblyAI, Sarvam, JigsawStack or native captions, so the provider fits your own vendor review.

Healthcare workflows that run today

With a BAA in place, clinical calls run alongside everything else.

Call typeWhat runs today
Telehealth visits and care coordinationUnder a signed BAA, with retention and storage you control
Internal training and case teachingPer-participant audio and any transcript engine
Research interviewsPeople consent first, and files land in your own bucket
Vendor and operations meetingsJoined on schedule through the Calendar API
Product feedback with cliniciansAbout software rather than patients

Care coordination touches a patient record, so put the BAA in place before those calls run. The compliance recording page covers retention.

MEETSTREAM DASHBOARDMeetStream dashboard listing bots with status and duration
Every bot with its platform, live status and duration.
Security

Enterprise-level security, keep your data private.

The certificate, the audit status and the Trust Center are all on the security page.

Robust and reliable

MeetStream is ISO 27001 certified and HIPAA compliant, with BAAs available. SOC 2 Type 2 is under audit rather than complete.

GDPR compliant

MeetStream is GDPR compliant, and bots run in the United States by default.

Storage in your account

Bring your own S3 bucket and recordings land there from the first byte.

SOC 2Type 2 (Under Audit)
ISO 27001Certified
GDPRCompliant

Healthcare bot limits and defaults

4 hoursdefault session, five when you raise it
No capconcurrent bots, and no limit to raise
30 daysstorage, or your own S3 bucket
ISO 27001certified. SOC 2 Type 2 is under audit
United StatesThe default regionEU, Australia, JapanAnd the Middle EastOther regionsAvailable on request
Bots run in the United States by default.

Email info@meetstream.ai to scope the agreements your build needs.

FAQ

Got a question? We got the answer.

Common questions about healthcare capture. What fits, where files live, and how speakers are named.

Where are recordings stored?

In MeetStream storage, 30 days are included at no charge, and you can adjust that per bot. Or use your own S3 bucket, where nothing is written to ours.

Does MeetStream handle protected health information?

Yes, under a signed Business Associate Agreement. MeetStream is HIPAA compliant; ask for a BAA before PHI reaches a bot, and keep access controls and audit logging for your own users in your application.

Can we separate clinician and patient audio?

Yes. Per-participant audio is complete on Zoom and speaker-attributed on Google Meet and Teams. A clinician and patient call carries PHI, so put the BAA in place first.

Does MeetStream sign a BAA or offer HIPAA compliance?

Yes to both. MeetStream is HIPAA compliant and signs BAAs. It is also ISO 27001 certified, and SOC 2 Type 2 is under audit. HHS issues no official HIPAA certification, so no vendor can honestly claim one.

Can recordings stay inside our own infrastructure?

Yes. With bring-your-own S3, recordings and transcripts go straight into your bucket. They sit inside your own security boundary. Your own retention rules apply.

Capture that stays inside your own account.

Provider training, research interviews and vendor calls, recorded through one API and written to storage you own.

Per-participant audio
Live transcripts
MP4 recordings
Your own S3 bucket
Calendar sync

Build it in an afternoon

One API to join, record, stream, and transcribe meetings across Zoom, Google Meet, and Microsoft Teams.