Image of files for blog about Do you need to retain a decedent’s health records for 50 years?

2 min read

Do you need to retain a decedent’s health records for 50 years?

No, you are not required to retain a decedent’s health records for 50 years under HIPAA. The HIPAA Privacy Rule protects a decedent’s protected health information (PHI) for 50 years after death but does not impose record retention requirements.

Read More
red digital email icon

2 min read

Healthcare breach roundup: Week of 11/18/24

The following breaches in healthcare were reported this week:

Read More
Image of phone with stethescope for blog about HIPAA compliant patient follow-up in telehealth

5 min read

HIPAA compliant patient follow-up in telehealth

Healthcare organizations can ensure HIPAA compliant patient follow-ups in telehealth by implementing secure communication methods, such as HIPAA...

Read More
Image of map for blog about Managing HIPAA compliance across borders

2 min read

Managing HIPAA compliance across borders

Healthcare providers should use HIPAA compliant email for international patients when providing telehealth services across borders. Choose an email...

Read More
Image of researcher for blog about Are tissue repositories covered entities?

3 min read

Are tissue repositories covered entities?

Tissue repositories are any facilities that collect or store tissue for research purposes. According to the HHS, tissue repositories are not covered...

Read More
Image of shield for blog about Familylinks breach connected to employee email account

2 min read

Familylinks breach connected to employee email account

Familylinks Inc., a nonprofit healthcare provider based in Pittsburgh, recently reported a data security incident that potentially exposed the...

Read More
Image of a shield for blog about Learning from the TriHealth Physician data breach 

2 min read

Learning from the TriHealth Physician data breach 

On November 14, 2024, TriHealth Physician Partners reported a data breach from a security incident at one of its vendors. The breach exposed...

Read More
red digital code

1 min read

Option Care Health announces data breach

Option Care Health, a provider of home and alternate site infusion therapy, recently reported a data security incident that compromised the protected...

Read More
Image of multiple computers for blog about Managing HIPAA risks on shared devices

2 min read

Managing HIPAA risks on shared devices

Healthcare organizations must manage HIPAA compliance risks when sharing protected health information (PHI) on shared devices. They should implement...

Read More
Image of emergency contact form for blog about HIPAA compliant approaches for reaching emergency contacts

2 min read

HIPAA compliant approaches for reaching emergency contacts

HIPAA allows contacting a patient’s emergency contact or family members in situations where the patient is unable to consent, using professional...

Read More
Image of someone typing for blog about Balancing real-time messaging and documentantion requirements under HIPAA

2 min read

Balancing real-time messaging and documentantion requirements

Real-time messaging and documentation can simplify communication, improve care coordination, and ensure accurate, up-to-date patient records,...

Read More
Image of phones for blog about Notifying patients of provider availability changes

2 min read

Notifying patients of provider availability changes

Healthcare practices should notify patients of provider availability changes through HIPAA compliant communication channels, such as encrypted email,...

Read More
Image of someone on their phone for blog about How to maintain HIPAA compliance when patients share PHI through social media

3 min read

Maintaing HIPAA compliance when patients share PHI over social media

To maintain HIPAA compliance when patients send protected health information (PHI) via social media, respond without disclosing PHI and direct them...

Read More