Asking ChatGPT a general health question, like what a lab term means or what to ask your doctor, is reasonably safe if you leave out identifying details. But there are two separate risks. The first is privacy: consumer AI apps generally aren’t covered by HIPAA, so what you type is governed by the company’s own policies. The second is accuracy: AI can be confidently wrong about medical facts, and it should never be the thing that decides a diagnosis, a dose or whether to seek care.
If you’re having a medical emergency, call 911 or your local emergency number, not a chatbot.
Does HIPAA protect what I tell ChatGPT? #
Usually not. HIPAA applies to health plans, most healthcare providers, clearinghouses and their business associates. A general-purpose AI chatbot you sign up for yourself isn’t one of those. The FTC points out that many health apps outside HIPAA fall under its Health Breach Notification Rule instead, which requires notice after a breach but doesn’t make the service private in the way people often assume.
In practice, what happens to your health questions depends on the company’s terms:
- OpenAI says it may use ChatGPT conversations to improve its models unless you turn that off in Data Controls. In January 2026 it launched a separate Health space in ChatGPT for health conversations, first via a waitlist and not in the UK, Switzerland or the European Economic Area.
- Google says a subset of Gemini chats is reviewed by humans, and that reviewed chats are kept for up to three years. It advises against entering confidential information.
- Anthropic keeps Claude chats for five years if you allow them to be used for training, and 30 days if you don’t.
We compare these settings in do humans read your AI chats.
How to ask health questions without identifying yourself #
You can get most of the value of AI without giving it your identity.
- Leave out your name, birthday, address and insurance or record numbers. None of them help the answer.
- Describe, don’t upload, when a document has your details on it. “My potassium was 5.4, the range says 3.5 to 5.0, what does high potassium usually mean?” works without a photo of the report.
- Crop or redact photos of lab results or prescriptions before uploading. Patient labels and barcodes carry identifiers.
- Use a separate account or temporary chat for health topics, and turn off memory so details don’t follow you into other chats.
- Think about who else is in the question. Your partner’s or child’s health information deserves the same care.
What’s AI good for in health questions? #
AI is best as an explainer and a prep tool:
- Understanding terms on a lab report, discharge summary or insurance letter
- Preparing questions before an appointment, so you don’t forget the important ones
- Summarizing a long leaflet or instructions into plain language
- Organizing symptoms into a clear timeline to show your doctor
- Explaining how a condition or test works in general
What should you never rely on AI for? #
- Diagnosis. AI can list possibilities, but it can’t examine you, and it can miss what matters.
- Medication doses and interactions. Check with your pharmacist or prescriber, every time.
- Whether to seek care. If you’re unsure, call your doctor’s office, a nurse line or urgent care.
- Emergencies. Chest pain, trouble breathing, signs of a stroke, severe bleeding, thoughts of self-harm: call emergency services. In the U.S., 988 is the Suicide & Crisis Lifeline.
- Replacing a professional’s advice you’ve already been given.
AI systems make things up, especially smaller ones, and medical errors are the costly kind. Our explainer on why AI makes things up shows how to spot it.
A private option: ask on your phone #
A local AI app runs the model on your phone, so health questions never reach a server. That solves the privacy side, though not the accuracy side.
Personal LLM is one such app. It needs no account and has no cloud sync, and your chats and attachments stay on the phone. For health paperwork, its document feature is the useful part: attach a PDF of discharge instructions or a lab report, ask “what does eGFR mean here?”, and it answers from the matching passages and shows which ones it used. The file is read on the phone and not uploaded. See chatting with a PDF offline for how that works.
Be clear about the trade-off. The models that fit on a phone, like Qwen 3.5 4B or Gemma 4 E4B, are much smaller than the models behind ChatGPT. They’re fine for “what does this word mean” and “turn this into a list of questions for my doctor.” They’re less reliable on rare conditions and specifics. Use them to understand, and let your care team decide.
A useful system prompt for health chats:
Explain things in plain language. Say clearly when you’re unsure. Don’t diagnose or recommend doses. Suggest questions I can ask my doctor or pharmacist.
Cloud vs on-device for health questions #
| Cloud chatbot | On-device AI | |
|---|---|---|
| Where your question goes | Company servers | Stays on your phone |
| HIPAA coverage | Generally none | Not applicable; no one else receives it |
| Human review possible | Yes, per company policy | No |
| Answer quality | Stronger models | Smaller, more error-prone models |
| Knows recent guidelines | Can search the web in many apps | Only up to its training data |
| Works offline | No | Yes |
Local models also don’t know anything published after their training data was collected. Google’s model card for Gemma 4 lists a January 2025 cutoff, for example. For current guidelines, go to your doctor or an official source.
The same privacy logic applies to money matters, which we cover in sharing financial info with ChatGPT.
Frequently asked questions #
Is ChatGPT HIPAA compliant? #
The consumer ChatGPT app isn’t a HIPAA-covered service in the way a hospital’s systems are. HIPAA applies to healthcare providers, health plans and their business associates. Treat what you type into a consumer chatbot as governed by the company’s privacy policy, not by HIPAA.
Can I upload my medical records to ChatGPT? #
You can, but think about what’s in them first. Records carry your name, date of birth and record numbers. Redact those, or use an on-device AI app so the file never leaves your phone.
Is AI accurate for medical questions? #
Sometimes, but not reliably enough to act on alone. AI can state wrong information confidently, and smaller models do it more often. Use AI to understand terms and prepare questions, and confirm anything important with a clinician or pharmacist.
Should I ask AI about my symptoms? #
It can help you describe and organize symptoms before a visit. It shouldn’t decide whether you need care. If symptoms are severe, sudden or worrying, contact a doctor, a nurse line or emergency services.
Is it safer to use an offline AI for health questions? #
It’s more private, because the question stays on your phone. It isn’t more accurate. Small offline models make more mistakes than large cloud models, so double-check anything that matters.