Developers · API

Generative AI API for Healthcare.

Outperforms general-purpose GPT-5.5, Claude Sonnet, and Gemini 3 Pro for healthcare applications while maintaining full HIPAA compliance. Purpose-built for therapy, clinical, and healthcare workflows.

30-day free developer trial
99.9% uptime guarantee
500K token context window
POST /v1/ChatCompletion200 OK
// HIPAA-compliant chat completion
POST https://api.bastiongpt.com/v1/ChatCompletion
Content-Type: application/json
Key: ab123456789012345678901234567890

{
  "messages": [{ "role": "user",
                "content": "What is a normal BP?" }],
  "max_tokens": 1000,
  "temperature": 0
}
100+
Deployed API customers
500K
Token context window
2M/min
Token throughput
99.9%
Uptime SLA
About the API

Build healthcare applications on the same engine our 10,000+ customers use every day.

This page outlines the necessary details to integrate with the BastionGPT API, including input parameters, output structure, pricing, limitations, and usage examples. To get started, sign up for BastionGPT Plus to explore our capabilities through the same API you'll receive access to. If you have additional questions or would like to apply for access, complete the access request form or schedule a consultation to review your use case and receive your API key.

Key Benefits

Frontier AI, with the controls healthcare actually requires.

HIPAA-compliant by design

Full compliance with healthcare regulations. Patient data stays secure with enterprise-grade encryption. Your data is never sold or used to train our AI models. Licensed for secure use with PHI and PII, with OpenAI having no access to your data.

Superior healthcare performance

Utilizes a pool of the leading AI models, fine-tuned for healthcare and mental health professionals. Expertly trained on thousands of clinical documentation standards and clinical workflows, such as SOAP notes, prior authorizations and appeal letters.

Enterprise-ready infrastructure

99.9% uptime SLA, 800 requests/minute, 2M tokens/minute. Built to support the next generation of powerful healthcare applications, with multi-region deployment in US, Canada (Quebec), and Australia for data residency compliance.

Features

Everything you need to ship a clinical product.

Chat completion

One POST request in, clinical-grade text out. Multi-turn conversations, your own system prompt, and a consistent response format with token usage on every call.

Streaming

Server-Sent Events with OpenAI-compatible chunks, so responses render token by token in your UI and existing SSE client code just works.

Document understanding

Upload a PDF, image, or text file once and ask questions about it in any chat request. Documents are stored durably, scoped to your API key, and reusable across requests: upload once, reference the id as often as you need. Supported types: PDF, plain text, HTML, CSV, Markdown, PNG, JPEG, up to 10 MB.

Audio transcription

Submit a recording, get back a transcript with speaker labels and timestamps. Medical transcription at $0.73 / hour, built for clinical accuracy on names, medications, and dosages. Common formats accepted (WAV, MP3, M4A, OGG, WEBM); conversion happens server-side.

Reduced content filtering

Reduced consumer-style content filters so clinicians can discuss substance use, sexual health, end-of-life care, and other adult topics in a healthcare context, without dead ends.

Multi-region deployment

Available in US, Canada (Quebec), and Australia for data residency compliance. Pick the region that matches your patients and regulatory footprint.

Pricing

Simple, predictable pricing.

Start with a flat monthly subscription that includes credits, then pay-as-you-go beyond. No enterprise minimums.

Developer Plan
BastionGPT API
$45/ month
Includes $45 in monthly token credits, then pay-as-you-go for any usage beyond that.
Included with subscription
2M tokens / minute rate limit
800 requests / minute
500K token context window
99.9% uptime SLA guarantee
Access to the BastionGPT user interface
30-day free developer trial
Pay-as-you-go rates beyond credits
Input $0.018 per 1K tokens (~770 words)
Output $0.045 per 1K tokens (~770 words)
Audio $0.73 per hour
Billed monthly, transparent invoicing
On the roadmap
Coming soon
New capabilities
In active development
Q4 2026 Image generation
Get Started

From signup to your first API call in 4 simple steps.

01

Sign up for BastionGPT Professional Plus

Explore our capabilities over your 30-day developer trial through the same UI powered by the API you'll receive access to.

02

Submit your use case for review

Schedule a 15-minute consultation or complete the access form below. Our technical and safety teams will review to confirm eligibility and ask any follow-up questions.

03

Receive your API key

Get your key and full documentation shortly after the meeting, typically the same business day.

04

Start building

Make your first API call. Our team is on chat, email, or video whenever you'd like a hand.

Developers · API

Generative AI API for Healthcare.

Outperforms general-purpose GPT-5.5, Claude Sonnet, and Gemini 3 Pro for healthcare applications while maintaining full HIPAA compliance. Purpose-built for therapy, clinical, and healthcare workflows.

  • 30-day free developer trial
  • 99.9% uptime guarantee
  • 500K token context window
100+
Deployed API customers
500K
Token context window
2M/min
Token throughput
99.9%
Uptime SLA
About the API

Build healthcare applications on the same engine our 10,000+ customers use every day.

This page outlines the necessary details to integrate with the BastionGPT API, including input parameters, output structure, pricing, limitations, and usage examples. To get started, sign up for BastionGPT Plus to explore our capabilities through the same API you'll receive access to. If you have additional questions or would like to apply for access, complete the access request form or schedule a consultation to review your use case and receive your API key.

Key Benefits

Frontier AI, with the controls healthcare actually requires.

HIPAA-compliant by design

Full compliance with healthcare regulations. Patient data stays secure with enterprise-grade encryption. Your data is never sold or used to train our AI models. Licensed for secure use with PHI and PII, with OpenAI having no access to your data.

Superior healthcare performance

Utilizes a pool of the leading AI models, fine-tuned for healthcare and mental health professionals. Expertly trained on thousands of clinical documentation standards and clinical workflows, such as SOAP notes, prior authorizations and appeal letters.

Enterprise-ready infrastructure

99.9% uptime SLA, 800 requests/minute, 2M tokens/minute. Built to support the next generation of powerful healthcare applications, with multi-region deployment in US, Canada (Quebec), and Australia for data residency compliance.

Features

Everything you need to ship a clinical product.

Chat completion

One POST request in, clinical-grade text out. Multi-turn conversations, your own system prompt, and a consistent response format with token usage on every call.

Streaming

Server-Sent Events with OpenAI-compatible chunks, so responses render token by token in your UI and existing SSE client code just works.

Document understanding

Upload a PDF, image, or text file once and ask questions about it in any chat request. Documents are stored durably, scoped to your API key, and reusable across requests: upload once, reference the id as often as you need. Supported types: PDF, plain text, HTML, CSV, Markdown, PNG, JPEG, up to 10 MB.

Audio transcription

Submit a recording, get back a transcript with speaker labels and timestamps. Medical transcription at $0.73 / hour, built for clinical accuracy on names, medications, and dosages. Common formats accepted (WAV, MP3, M4A, OGG, WEBM); conversion happens server-side.

Reduced content filtering

Reduced consumer-style content filters so clinicians can discuss substance use, sexual health, end-of-life care, and other adult topics in a healthcare context, without dead ends.

Multi-region deployment

Available in US, Canada (Quebec), and Australia for data residency compliance. Pick the region that matches your patients and regulatory footprint.

Pricing

Simple, predictable pricing.

Start with a flat monthly subscription that includes credits, then pay-as-you-go beyond. No enterprise minimums.

On the roadmap
Coming soon
New capabilities
In active development
  • Q3 2026  Support for Microsoft Office files and 40+MB file support
  • Q4 2026  Image generation
Get Started

From signup to your first API call in 4 simple steps.

Sign up for BastionGPT Professional Plus

Explore our capabilities over your 30-day developer trial through the same UI powered by the API you'll receive access to.

Submit your use case for review

Schedule a 15-minute consultation or complete the access form below. Our technical and safety teams will review to confirm eligibility and ask any follow-up questions.

Receive your API key

Get your key and full documentation shortly after the meeting, typically the same business day.

Start building

Make your first API call. Our team is on chat, email, or video whenever you'd like a hand.

Schedule a consultation Or complete the access form
API Reference

API URLs and example usage.

One base URL, an OpenAI-style request shape, and a consistent response format across chat, documents, and transcription. If you've integrated with mainstream LLM APIs before, you'll feel right at home.

API Endpoint

One base URL for every request. Chat completions post to this endpoint.

POSTEndpointCopy
https://api.bastiongpt.com/v1/ChatCompletion

HTTPS Request Example

Send messages, get a structured chat completion back. The messages array and max_tokens are required; temperature is optional and defaults to 0.

REQUESTapplication/jsonCopy
POST /v1/ChatCompletion HTTP/1.1
Host: api.bastiongpt.com
Content-Type: application/json
Key: ab123456789012345678901234567890

{
  "messages": [{"role": "user", "content": "What is a normal BP?"}],
  "max_tokens": 1000,
  "temperature": 0
}

HTTPS Response Example

Familiar choices/usage shape, with camelCase field names and token usage on every call.

200 OKapplication/json
{
  "choices": [
    {
      "finishReason": "stop",
      "message": {
        "content": "A typical blood pressure range for a healthy adult is around 90/60 mmHg to 120/80 mmHg."
      }
    }
  ],
  "id": "f1ad1c1a-4713-4d09-bcbe-7784e7434f2a",
  "created": 1784062984,
  "usage": {
    "completionTokens": 26,
    "promptTokens": 65,
    "totalTokens": 91
  }
}

Complete reference documentation, a Postman collection, and an OpenAPI specification are provided with your API key.

Request API Access

Tell us about your use case.

Submit the form and our technical and safety teams will review for eligibility. We typically respond within one business day. Prefer a live conversation? Schedule a 15-minute consultation instead.

Fast turnaround. Most reviews completed within one business day.
Confidential. Submissions are reviewed only by our internal technical and safety teams.
No commitment. A submission is a request for access, not a purchase.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Enterprise-grade security

How your API connections are protected.

We prioritize the security and integrity of your data. Our API infrastructure is built with robust security measures, ensuring every interaction is protected using industry best practices.

Top-tier encryption

Data in transit is protected by the latest, most secure encryption protocols. We exclusively support TLS 1.3 and TLS 1.2, disabling outdated and vulnerable protocols like SSLv3, TLS 1.0, and TLS 1.1.

Advanced cipher suites

Strong, authenticated cipher suites including AES-GCM (up to 256-bit) for high performance and the highest level of confidentiality and integrity for your API calls.

Forward secrecy

ECDHE key exchange ensures that even if a server's long-term private key were ever compromised, past communication sessions remain secure and cannot be decrypted.

Trusted & verified identity

Our API endpoint uses a certificate from GeoTrust / DigiCert, signed with a strong SHA-256 algorithm, verifying our server identity and establishing a trusted channel.

Hardened against vulnerabilities

Configuration is actively hardened against known SSL/TLS vulnerabilities including BEAST, POODLE, Heartbleed, and ROBOT. We continuously monitor and update against emerging threats.

Independently verified

Our endpoint configuration consistently achieves a top 'A' rating from independent SSL/TLS assessment tools.

Ready to build

Take the first step.

Start your trial, request access, or talk to our team. Whichever path fits, we'll have you making your first call within days, not quarters.

API Reference

API URLs and example usage.

One base URL, an OpenAI-style request shape, and a consistent response format across chat, documents, and transcription. If you've integrated with mainstream LLM APIs before, you'll feel right at home.

API Endpoint

One base URL for every request. Chat completions post to this endpoint.

POST Endpoint
https://api.bastiongpt.com/v1/ChatCompletion

HTTPS Request Example

Send messages, get a structured chat completion back. The messages array and max_tokens are required; temperature is optional and defaults to 0.

REQUEST application/json
POST /v1/ChatCompletion HTTP/1.1
Host: api.bastiongpt.com
Content-Type: application/json
Key: ab123456789012345678901234567890

{
  "messages": [{"role": "user", "content": "What is a normal BP?"}],
  "max_tokens": 1000,
  "temperature": 0
}

HTTPS Response Example

Familiar choices/usage shape, with camelCase field names and token usage on every call.

200 OK application/json
{
  "choices": [
    {
      "finishReason": "stop",
      "message": {
        "content": "A typical blood pressure range for a healthy adult is around 90/60 mmHg to 120/80 mmHg."
      }
    }
  ],
  "id": "f1ad1c1a-4713-4d09-bcbe-7784e7434f2a",
  "created": 1784062984,
  "usage": {
    "completionTokens": 26,
    "promptTokens": 65,
    "totalTokens": 91
  }
}

Complete reference documentation, a Postman collection, and an OpenAPI specification are provided with your API key.

Request API Access

Tell us about your use case.

Submit the form and our technical and safety teams will review for eligibility. We typically respond within one business day. Prefer a live conversation? Schedule a 15-minute consultation instead.

Fast turnaround. Most reviews completed within one business day.
Confidential. Submissions are reviewed only by our internal technical and safety teams.
No commitment. A submission is a request for access, not a purchase.

Submitted. Your request is in.

Our technical and safety teams will review your submission and reply by email, typically within one business day. If your use case is a fit, we'll send your API key and documentation right after.

Enterprise-grade security

How your API connections are protected.

We prioritize the security and integrity of your data. Our API infrastructure is built with robust security measures, ensuring every interaction is protected using industry best practices.

Top-tier encryption

Data in transit is protected by the latest, most secure encryption protocols. We exclusively support TLS 1.3 and TLS 1.2, disabling outdated and vulnerable protocols like SSLv3, TLS 1.0, and TLS 1.1.

Advanced cipher suites

Strong, authenticated cipher suites including AES-GCM (up to 256-bit) for high performance and the highest level of confidentiality and integrity for your API calls.

Forward secrecy

ECDHE key exchange ensures that even if a server's long-term private key were ever compromised, past communication sessions remain secure and cannot be decrypted.

Trusted & verified identity

Our API endpoint uses a certificate from GeoTrust / DigiCert, signed with a strong SHA-256 algorithm, verifying our server identity and establishing a trusted channel.

Hardened against vulnerabilities

Configuration is actively hardened against known SSL/TLS vulnerabilities including BEAST, POODLE, Heartbleed, and ROBOT. We continuously monitor and update against emerging threats.

Independently verified

Our endpoint configuration consistently achieves a top 'A' rating from independent SSL/TLS assessment tools.

Ready to build

Take the first step.

Start your trial, request access, or talk to our team. Whichever path fits, we'll have you making your first call within days, not quarters.