MHICO

Organize/Share Health Data
Direct Access

MHICO (My Health Insurance Copilot) is an AI-powered health insurance navigation platform that connects to your health plan via FHIR Patient Access API to help you understand your benefits, decode medical bills, dispute claims, compare plans, and maximize your coverage. MHICO does not sell your data and gives you full control to revoke access and delete your information at any time.

Go to App
code of conduct
BadgesCarin badge
Web
Organize/Share Health Data
Direct Access

MHICO (My Health Insurance Copilot) is an AI-powered health insurance navigation platform that connects to your health plan via FHIR Patient Access API to help you understand your benefits, decode medical bills, dispute claims, compare plans, and maximize your coverage. MHICO does not sell your data and gives you full control to revoke access and delete your information at any time.

Go to App

Learn More

MHICO (My Health Insurance Copilot) is an AI-native health insurance navigation platform that connects directly to your health plan's Patient Access API using HL7 FHIR R4 standards and the CARIN Blue Button Implementation Guide. MHICO retrieves your claims, explanations of benefits, coverage details, and clinical data — then uses AI to turn complex information into clear,     actionable answers.

What MHICO does:

Benefits Navigation.

Ask plain-language questions about your coverage and get personalized answers based on your actual plan data.

Claims & Bill Analysis.

Identify billing errors, understand denials, and get help with disputes and appeals.

Plan Comparison.

Compare plans across Employer, ACA Marketplace, Medicare, Medicaid, and COBRA using your actual utilization history.

Cost Transparency & Provider Lookup.

Anticipate out-of-pocket costs, track your deductible status, and verify in-network providers via FHIR-based provider directories.

Full Benefits Scope.

Navigate dental, vision, pharmacy, HSA/FSA, life insurance, disability, and more.

Privacy, security, and compliance — by design:

MHICO endorses and adheres to the CARIN Alliance Trust Framework and Code of Conduct. Our Privacy Policy addresses every CARIN-required topic: collection limitation, consent, use limitation, disclosure limitation, individual access, security, retention/deletion, and de-identification practices.

We access data only with explicit authorization through your health plan's OAuth 2.0 / SMART on FHIR consent flow. We obtain informed, proactive opt-in consent before collecting, using, or disclosing personal data. We obtain separate consent for marketing. Material policy changes require 30 days advance notice and re-affirmation of consent. We never sell personal data or de-identified information. We never use data for targeted advertising, underwriting, or discrimination.

All third-party service providers are contractually bound to equivalent commitments, including prohibitions on re-identification. You can access, correct, port, and delete your data at any time. Account deletion permanently removes all personal data within 30 days. MHICO implements AES-256 encryption at rest, TLS 1.2+ in transit, role-based access controls, audit logging, and NIST IAL2/AAL2-compliant authentication. We comply with the FTC Health Breach Notification Rule, COPPA, and state privacy laws including CCPA/CPRA, VCDPA, CPA, CTDPA, NJ, Nevada, and Washington's My Health My Data Act.

MHICO Inc., New Jersey. Connected to Aetna's Patient Access API in production, with additional payer integrations in progress.

About us

Empowering Your Health Journey

PlaceholderVideo bg
List icon

Bridging Health Connections

Unify your health information across various networks, giving you control and clarity over your health journey.

List icon

Standards and Assurance

We prioritize transparency. The presence of the CARIN code of conduct symbol highlights an app's commitment to best industry practices for your health data protection.

FAQ

Frequently Asked Questions

Who is supporting My Health Application?

My Health Application is being managed by the CARIN Alliance, which is a multi-sector alliance led by distinguished risk-bearing providers, health plans, pharmaceutical companies, consumer platform companies, health IT companies, third-party applications, and consumer-advocates working collaboratively with other stakeholders in government to overcome barriers in advancing consumer-directed exchange across the U.S.

The CARIN Alliance manages only this website; the CARIN Alliance does not endorse, certify, or manage any of the applications listed on this site. You should make your own judgment as to the application that is best for you based on information provided by the application vendors.

Why is this project important?

The vision of the CARIN Alliance is to rapidly advance the ability for consumers and their authorized caregivers to easily get, use, and share their digital health information when, where, and how they want to achieve their goals. Specifically, we are promoting the ability for consumers and their authorized caregivers to gain digital access to their health information via non-proprietary application programming interfaces or APIs.

We envision a future where any consumer can choose any application to retrieve both their complete health record and their complete coverage information from any provider or health plan in the country in a secure manner while protecting their privacy and individual consent sharing preferences. This website helps to advance the ability for consumers to access an application of their choice based on their own individual data sharing preferences.

What is the CARIN code of conduct?

The CARIN Code of Conduct is a set of industry-leading best practices that the companies offering these applications have voluntarily adopted to protect and secure your health information. We strongly recommend that you read the application’s privacy policies and terms and conditions to ensure that you select an application that you feel would protect and secure your health data in a way that is consistent with your individual data sharing preferences.

We would strongly recommend you read the application’s privacy policies and terms and conditions to ensure you select an application that you feel would protect and secure your health data in a way that is consistent with your individual data sharing preferences.

How were these applications added to the website and which ones should I trust?

These applications came from the CMS Blue Button 2.0 site, EHR application vendor websites, CARIN Alliance members, and other public sources. Right now, the only thing that the CARIN Alliance has done is list the websites. Our initial goal is to focus on transparency and making sure the individual selecting an application knows where to go to find an application. We are also trying to make each application’s privacy policies and terms of service more readily available to the individual. Over time, we want to provide more consumer-friendly ways to help individuals understand how these applications are using their data.

CircleCircle
Join Us

Developer? List
Your Health App!

Join our growing community of trusted health apps. Get visibility, connect with potential users, and be a part of the movement to prioritize patient-centered health care.

Bg imageCircleCircleBg image