Compliance & Regulations
Our commitment to regulatory compliance and industry standards
HealthPlanFinder is committed to maintaining the highest standards of compliance with all applicable federal and state regulations governing health insurance marketplaces and consumer protection.
1. Affordable Care Act (ACA) Compliance
We operate in full compliance with the Affordable Care Act and its implementing regulations:
- We provide access to qualified health plans that meet ACA standards
- We facilitate enrollment during Open Enrollment and Special Enrollment Periods
- We help consumers determine eligibility for premium tax credits and cost-sharing reductions
- We ensure all plans cover essential health benefits
- We prohibit discrimination based on pre-existing conditions
- We comply with all consumer protection provisions
2. HIPAA Compliance
We comply with the Health Insurance Portability and Accountability Act (HIPAA) to protect your health information:
Privacy Rule
- We protect the privacy of your protected health information (PHI)
- We limit use and disclosure of PHI to the minimum necessary
- We provide you with notice of our privacy practices
- We give you rights over your health information
Security Rule
- We implement administrative, physical, and technical safeguards
- We use encryption for data transmission and storage
- We conduct regular security risk assessments
- We train employees on security procedures
- We have incident response and breach notification procedures
Breach Notification Rule
In the event of a breach of unsecured PHI, we will:
- Notify affected individuals without unreasonable delay
- Report breaches to the Department of Health and Human Services
- Notify media outlets if the breach affects more than 500 individuals
3. State Insurance Regulations
We comply with insurance regulations in all states where we operate:
- We maintain appropriate licenses and registrations
- Our agents are licensed in their respective states
- We follow state-specific enrollment and marketing rules
- We comply with state consumer protection laws
- We participate in state insurance department oversight
4. Data Protection & Privacy
GDPR Compliance (for EU visitors)
While our services are primarily for U.S. residents, we respect the rights of EU visitors:
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to data portability
- Right to object to processing
CCPA Compliance (California)
We comply with the California Consumer Privacy Act:
- We disclose what personal information we collect
- We provide the right to know what data we have about you
- We honor requests to delete personal information
- We do not sell personal information
- We do not discriminate against consumers who exercise their rights
5. Financial Regulations
PCI DSS Compliance
We comply with Payment Card Industry Data Security Standards:
- We use secure payment processors
- We do not store credit card information
- We maintain secure networks
- We regularly test security systems
Anti-Money Laundering (AML)
We have procedures to prevent money laundering and fraud:
- Identity verification procedures
- Transaction monitoring
- Suspicious activity reporting
- Employee training on AML compliance
6. Accessibility Compliance
ADA & Section 508
We strive to make our website accessible to all users:
- WCAG 2.1 Level AA compliance
- Screen reader compatibility
- Keyboard navigation support
- Alternative text for images
- Accessible forms and documents
- Color contrast requirements
Language Access
We provide language assistance services:
- Multilingual customer support
- Translated materials for common languages
- Interpreter services available upon request
7. Marketing & Advertising Compliance
Our marketing practices comply with federal and state regulations:
- CAN-SPAM Act compliance for email marketing
- Telephone Consumer Protection Act (TCPA) compliance
- Truth in advertising standards
- Clear and conspicuous disclosures
- Prohibition of misleading or deceptive practices
- Respect for Do Not Call registries
8. Agent Licensing & Training
All our insurance agents meet strict requirements:
- Licensed in their respective states
- Completed required training and certification
- Ongoing continuing education
- Background checks and screening
- Adherence to professional standards of conduct
- Regular compliance training
9. Quality Assurance & Monitoring
We maintain robust quality assurance programs:
- Regular compliance audits
- Call monitoring and quality reviews
- Customer satisfaction surveys
- Complaint tracking and resolution
- Performance metrics and reporting
- Continuous improvement initiatives
10. Reporting & Transparency
We maintain transparency in our operations:
- Regular reporting to regulatory agencies
- Public disclosure of business practices
- Clear explanation of compensation arrangements
- Transparent pricing and fee structures
- Annual compliance reports
11. Certifications & Memberships
We maintain industry certifications and memberships:
Certifications
- ✓ SOC 2 Type II Certified
- ✓ HIPAA Compliant
- ✓ PCI DSS Compliant
- ✓ ISO 27001 Certified
Memberships
- ✓ National Association of Health Underwriters
- ✓ Better Business Bureau (A+ Rating)
- ✓ Chamber of Commerce
- ✓ Healthcare Information Management Systems Society
12. Compliance Contacts
For compliance-related inquiries or to report concerns:
Privacy Officer
For privacy-related concerns: privacy@healthplanfinder.app
Whistleblower Reports
To report compliance violations anonymously: compliance@healthplanfinder.app
13. Regulatory Oversight
We are subject to oversight by multiple regulatory agencies:
- Centers for Medicare & Medicaid Services (CMS)
- Department of Health and Human Services (HHS)
- State Insurance Departments
- Federal Trade Commission (FTC)
- Consumer Financial Protection Bureau (CFPB)