File folders with white labels in a filing cabinet drawer

2 min read

Do you need to retain a decedent’s health records for 50 years?

No, you are not required to retain a decedent’s health records for 50 years under HIPAA. The HIPAA Privacy Rule protects a decedent’s protected health information (PHI) for 50 years after death but does not impose record retention requirements.

Read More
red digital email icon

2 min read

Healthcare breach roundup: Week of 11/18/24

The following breaches in healthcare were reported this week:

Read More
White smartphone with stethoscope on blue background

5 min read

HIPAA compliant patient follow-up in telehealth

Healthcare organizations can ensure HIPAA compliant patient follow-ups in telehealth by implementing secure communication methods, such as HIPAA...

Read More
World map with glowing connection points and lines representing global network

2 min read

Managing HIPAA compliance across borders

Healthcare providers should use HIPAA compliant email for international patients when providing telehealth services across borders. Choose an email...

Read More
Laboratory researcher working with test tubes and samples at a bench

3 min read

Are tissue repositories covered entities?

Tissue repositories are any facilities that collect or store tissue for research purposes. According to the HHS, tissue repositories are not covered...

Read More
Digital shield with keyhole on blue hexagonal background representing cybersecurity

2 min read

Familylinks breach connected to employee email account

Familylinks Inc., a nonprofit healthcare provider based in Pittsburgh, recently reported a data security incident that potentially exposed the...

Read More
Digital shield with keyhole on a blue hexagonal network background

2 min read

Learning from the TriHealth Physician data breach 

On November 14, 2024, TriHealth Physician Partners reported a data breach from a security incident at one of its vendors. The breach exposed...

Read More
red digital code

1 min read

Option Care Health announces data breach

Option Care Health, a provider of home and alternate site infusion therapy, recently reported a data security incident that compromised the protected...

Read More
Row of desktop computers with monitors, keyboards, and mice on a shared workspace table

2 min read

Managing HIPAA risks on shared devices

Healthcare organizations must manage HIPAA compliance risks when sharing protected health information (PHI) on shared devices. They should implement...

Read More
Emergency contact form with pen ready to fill in child's name and contact information

2 min read

HIPAA compliant approaches for reaching emergency contacts

HIPAA allows contacting a patient’s emergency contact or family members in situations where the patient is unable to consent, using professional...

Read More
Hands typing on keyboard with digital icons for email, lock, users, and documents

2 min read

Balancing real-time messaging and documentantion requirements

Real-time messaging and documentation can simplify communication, improve care coordination, and ensure accurate, up-to-date patient records,...

Read More
Vintage telephone handsets on a gray background

2 min read

Notifying patients of provider availability changes

Healthcare practices should notify patients of provider availability changes through HIPAA compliant communication channels, such as encrypted email,...

Read More
Person using smartphone next to laptop at desk

3 min read

Maintaing HIPAA compliance when patients share PHI over social media

To maintain HIPAA compliance when patients send protected health information (PHI) via social media, respond without disclosing PHI and direct them...

Read More