HubSpot has opened a private beta for something healthcare operations teams have been asking about for years: a native app connection to Epic, the electronic medical record system that most large US health systems run on. Records sync from Epic directly into HubSpot, where they map automatically to contacts, appointments, and sensitive data properties in real time. If you work in a hospital, health system, clinic group, or any organization that touches patient data and also runs HubSpot, this is the most significant healthcare release HubSpot has shipped since it added Sensitive Data support.
Here is what the integration is, some background on why Epic is the system that matters, and a detailed look at what you can actually build once the data lands in HubSpot, including the constraints that will shape your first build.
If you have received care at a major US hospital in the last decade, your chart almost certainly lives in Epic. Judy Faulkner founded the company in 1979 in a Madison, Wisconsin basement with roughly $70,000 in startup capital. It is now headquartered in Verona, Wisconsin, is still privately held, and by its own count more than 325 million patients have an electronic record in its system.
The market position is what makes this integration matter. According to KLAS Research's 2026 acute care EHR market share report, Epic holds 43.7% of the acute care EHR market, covering 43.7% of hospitals and 56.9% of inpatient beds. In 2025 Epic was the only vendor selected by health systems with more than 10 hospitals, and it added 77 hospitals and 18,679 beds while competitors lost ground. If you are integrating with one EMR, Epic is the one that reaches the most patients.
Two Epic products are worth knowing by name because patients and staff interact with them constantly:
Epic is also, historically, a difficult system to get data out of for anything that is not clinical. It is the clinical system of record, it is tightly governed, and non-clinical teams who wanted patient data in a CRM have typically needed middleware, an HL7 or FHIR project, an integration vendor, or a series of manual exports. That is the friction this app removes.
The Epic app provides a real-time, one-way sync from Epic into HubSpot. Epic remains the source of truth. Data is managed in Epic and read in HubSpot. Nothing your marketing or service team does in HubSpot writes back into the chart, which is exactly the boundary most clinical governance committees will want to see.
What syncs today:
| What syncs | Direction | Where it lands in HubSpot |
|---|---|---|
| Contacts | Epic to HubSpot, real time | Contact records, mapped automatically |
| Appointments | Epic to HubSpot, real time | Appointment data mapped to the right places |
| Health data, including ePHI | Epic to HubSpot, real time | Sensitive Data properties |
| GDPR special category data | Epic to HubSpot, real time | Sensitive Data properties |
The sensitive data handling is the part worth pausing on. The app is built to carry special categories of data under GDPR, such as race or religion, and health data including electronic protected health information (ePHI), for both HIPAA-covered and non-covered entities. HubSpot already supported storing sensitive data; the Epic app closes the remaining gap of getting health records in from the system most customers actually use. HubSpot has said more data types are under consideration and coming soon, so treat the current scope as a starting point rather than the finished product.
HubSpot names three capabilities once your Epic data is in the CRM: list segmentation, automation, and reporting. That undersells it in one direction and oversells it in another, so here is the detailed version, tool by tool, including where HubSpot's Sensitive Data rules will stop you.
Because the sync is real time rather than a nightly file drop, segments built on Epic data stay current on their own. Practical segments a health system can maintain without anyone touching a spreadsheet:
One note on mechanics: HubSpot documents Sensitive Data properties working with when a filter criteria is met enrollment triggers, which is the same criteria engine list filters use. Confirm behavior for your specific properties during the beta rather than assuming parity.
This is where the integration earns its keep, and also where the guardrails are tightest. HubSpot explicitly supports Sensitive Data properties in when a filter criteria is met enrollment triggers and in AND/OR branches. That is enough to build real operational automation:
Three workflow limitations to design around, per HubSpot's documentation: copy property actions cannot reference Sensitive Data properties, personalization tokens cannot use or reference them, and when an event occurs enrollment triggers based on changes to Sensitive Data property values are not supported. HubSpot also recommends restricting access to the workflows tool itself once sensitive properties are in play, since a workflow builder can otherwise infer values through branch logic.
Reporting is the quietly transformative part, because it closes a loop most health systems have never been able to close in one system:
Who can see these reports depends entirely on the field-level permissions you set on the underlying properties, so design permissions before you build dashboards, not after someone runs an access review.
Beyond lists and reports, the everyday value is a single record. The access center, referral coordinators, patient experience team, and service reps see Epic-sourced fields alongside the emails, calls, forms, notes, and tickets that already live in HubSpot. Supporting details that matter operationally:
HubSpot forms and non-HubSpot forms can both collect sensitive information into Sensitive Data properties, encrypted on the way into the CRM. That makes pre-visit questionnaires, intake forms, and document uploads a legitimate HubSpot workflow rather than something you route around. Only users with the right permissions can see those submission values and files, and submission notifications respect the same permissions. Notably, forms are one of the few places Highly Sensitive Data is supported.
Breeze Assistant works in accounts with Sensitive Data turned on, but Sensitive Data property values are deliberately excluded from Breeze to prevent exposure. Accounts with Sensitive Data enabled are also automatically opted out of HubSpot AI model training and cannot opt back in while it is on. So plan for Breeze to help with content and general CRM work, not to summarize PHI fields. And keep sensitive information out of prompts.
HubSpot documents specific tools where Sensitive Data does and does not work. This table is the single most useful thing to have in front of you when scoping a build:
| Tool or capability | Sensitive Data status |
|---|---|
| Workflow enrollment on filter criteria is met, AND/OR branches | Supported |
| HubSpot forms and non-HubSpot forms, including file uploads | Supported, including Highly Sensitive |
| Record attachments, notes, one-to-one email, mobile app, import | Supported, encrypted |
| Data sync field mappings with data sync apps | Supported, can be bi-directional |
| Field-level permissions and audit logging | Supported, strongly recommended |
| Personalization tokens | Not supported |
| Chatbots, playbooks, sandboxes | Not supported |
| Workflow copy property actions referencing sensitive properties | Not supported |
| When an event occurs triggers on sensitive value changes | Not supported |
| Breeze use of Sensitive Data property values | Restricted, and AI training opt-out is forced |
| Source account for multi-account data mirroring | Not allowed with Sensitive Data on |
| Migrating data centers after indicating HIPAA data storage | Not allowed |
| Snowflake Data Share with HIPAA-protected data | AWS US_EAST_1 and AWS EU_CENTRAL_1 only |
| Files tool storage | No additional protection, do not store sensitive files there |
Read the personalization token line again, because it is the one that reshapes plans. If a field is a Sensitive Data property, you cannot drop it into an email as a personalization token. So an email that says "your cardiology appointment on Tuesday at 2:15" only works if those specific appointment fields are not flagged sensitive. That is a deliberate decision to make with your compliance team, and it is the single most important question to put to HubSpot during the beta, since the app maps data automatically and property configuration is effectively permanent once created.
The practical consequence: the highest-value early builds are internal operations and reporting, where sensitive fields drive segmentation, routing, branching, tasks, and dashboards without ever appearing in outbound content. Patient-facing personalized messaging is achievable, but it depends on a carefully drawn line between which Epic fields are sensitive and which are not, and on the consent and HIPAA marketing rules that govern the message regardless.
Which leads to the boundary worth stating plainly. This is not a clinical tool and it does not replace anything in Epic. It is one-way, so HubSpot cannot update the chart. And having ePHI in HubSpot does not by itself give you permission to market to a patient. The integration solves the data plumbing problem. Governance is still your job.
A few prerequisites and planning notes, based on how HubSpot's Sensitive Data functionality works today:
The Epic app is in private beta with limited spots. HubSpot is accepting applications through an interest form linked from the Epic app entry in the Product Updates section of your HubSpot portal. If you are a healthcare organization running both Epic and HubSpot Enterprise, applying early is worth it, both for the access and for the chance to shape which data types get added next.
Integrations like this succeed or fail on the unglamorous parts: property architecture you cannot undo, field-level permissions, consent handling, and workflows that reflect how your access, marketing, and service teams actually operate. That is the work we do inside HubSpot every day, and we start by mapping the current state before anything gets built. If you are evaluating whether the Epic app fits your organization, or want help preparing your HubSpot instance so you are ready when access comes through, get in touch.
Sources: HubSpot Product Updates (Epic app for medical records, private beta, updated July 29, 2026); KLAS Research 2026 acute care EHR market share report; HubSpot Knowledge Base, "Store Sensitive Data in HubSpot" and "Understand how Sensitive Data is used in HubSpot tools" (last updated July 2, 2026).