For Privacy Officers
Gap analysis and remediation plans
Review the gap checklist, turn gaps into remediation plans, attach evidence, and close plans out (Steps 3 and 4).
Gap Analysis
Open sidebar Gap Analysis or dashboard Step 3. The Gap Analysis Report is a 45-item checklist of common HIPAA gaps, grouped by area (risk assessment, training, access controls, encryption, and so on).

- Status badges (Non-Compliant, Needs Review, Addressed, Partially Addressed) update as you complete other parts of the portal. Treat them as a guide, not a final answer.
- Learn More on any item shows the applicable regulations and helpful links.
- Search, filter by category, or use Expand All / Collapse All.
- Export Gap Report downloads a Markdown summary.
Opening this page marks Step 3 complete.
Turn gaps into plans
- Click Generate Plans, then Generate Plans again to confirm.
- Click Go to Remediation Plans.
This creates a plan for each of the 45 items (Non-Compliant as High priority, Needs Review as Medium), each due in 90 days. Regenerate Plans replaces only the plans that came from the Gap Analysis. Plans from your SRA and plans you created yourself are kept.
Remediation plans
Open sidebar Remediation Plans or dashboard Step 4. Plans come from three places: each No on your SRA, the Gap Analysis, and plans you add yourself.
Across the top you'll see tiles for Total, Open, In Progress, Completed, Overdue, and Completion %. Filter by status and priority, or sort. A plan shows Overdue automatically once its due date passes.

Add a plan
Click Add New Plan, fill in Title (the only required field) plus anything else you want (description, priority, assignee, due date, notes), and click Create Plan.
Attach evidence
Open the plan
Click the pencil (Edit) icon on the plan. Evidence can only be attached to a plan that already exists. Each plan's description gives you plain-English guidance on what to fix.

Attach
Under Supporting Documentation, click Attach Document and choose your file (up to 10 MB).
Save
Click Save Changes.
Update or close a plan
- Mark done: click the check icon on the row, or open the plan and click Close Plan.
- Show progress: open the plan, set Status to In Progress, and click Save Changes.
- Delete: click the trash icon, then Delete.
Some plans close themselves (they show an Auto-closed chip) when related work is done in the portal, like everyone finishing training. Give auto-closed plans a quick look to make sure they match work you've actually done.
When you close your last open plan, you get a little celebration. You earned it.
Export
- CSV downloads a spreadsheet of every plan.
- Report downloads a Markdown report.
- Export PDF opens your browser's print dialog. Choose Save as PDF. If nothing happens, allow pop-ups for the portal.