What xAI's Grok build CLI sends to xAI: A wire-level analysis 10 days ago
Re: HIPAA, it would be the covered entity or business associate that is allowing xAI access to PHI who would be in violation, not xAI; same as Google isn’t responsible if someone sends PHI over Gmail and Google scans it.