Evernote has stated that it does not enable HIPAA compliance. Evernote is designed to make file sharing easier, which may conflict with the privacy standards of HIPAA.
Although Evernote incorporates some protection features that can prevent unauthorized access, the overall security controls aren’t likely sufficient to meet HIPAA standards.
Evernote can only be used for medical data storage purposes if it’s completely offline and is going to stay offline. The computer that Evernote is set up on should be encrypted in order to prevent unauthorized personnel from accessing the information.