Using PHI with Cursor

Hi!

I work with healthcare data and its looking like it would be useful to pass some of it through cursor for development.

My understanding is that because the prompt data passes to cursor, to send phi, we would need a BAA with Cursor? Does Cursor do this or should we keep PHI out of cursor? does anyone know of any official recommendations on this topic form cursor?

Thanks!

Even though you can enable Privacy Mode in Cursor I would avoid using PHI. Or use bogus test patient data if you need to pass it anything.

Or you contact Cursor and see if they offer a business or enterprise subscription which might provide better security with any PHI data you use.