Facebook does not enable HIPAA compliance for any of its products or features, including the pixel and Messenger.
Facebook provides several privacy controls but may not have the technical, administrative, and physical safeguards that HIPAA regulations require. The Facebook pixel, in particular, seems to risk exposing patient data to third parties. And, despite end to end encryption, Facebook Messenger lacks features like audit logs and access reports that are necessary to protect PHI.
The Facebook site and the terms and policies on Meta’s site do not mention HIPAA compliance or Business Associate Agreements.