Sharing substance abuse records under HIPAA and 42 CFR Part

2 min read

Sharing substance abuse records under HIPAA and 42 CFR Part

Under HIPAA and the 42 CFR Part 2 rule, substance abuse records can be shared with one written patient consent form for future uses and disclosures related to treatment, payment, and healthcare operations. Once shared, HIPAA covered entities and...

Read More
How to document HIPAA compliance efforts

2 min read

How to document HIPAA compliance efforts

Healthcare organizations must document HIPAA compliance efforts to safeguard patient information, mitigate legal risks, and prove adherence to...

Read More
Managing pediatric PHI under HIPAA

2 min read

Managing pediatric PHI under HIPAA

Considerations for managing pediatric PHI under HIPAA include being compliant with the Privacy Rule, which grants parents access to their child's...

Read More
Avoiding HIPAA violations when fowarding emails

3 min read

Avoiding HIPAA violations when fowarding emails

Healthcare organizations can avoid HIPAA violations when forwarding emails by using HIPAA compliant email systems, encrypting emails and attachments,...

Read More
The basic elements of a HIPAA compliant breach notification

2 min read

The basic elements of a HIPAA compliant breach notification

Under HIPAA, covered entities must notify affected individuals, the U.S. Department of Health and Human Services (HHS), and in some cases, the media,...

Read More
Digital privacy in mental healthcare

4 min read

Digital privacy in mental healthcare

Digital privacy in mental healthcare can help maintain HIPAA compliance by protecting patient information from unauthorized access, breaches, and...

Read More
Who does HIPAA apply to?

3 min read

Who does HIPAA apply to?

HIPAA applies to covered entities, which include healthcare providers, health plans, and healthcare clearinghouses, as well as their business...

Read More
Why implement HIPAA compliant email rules?

2 min read

Why implement HIPAA compliant email rules?

Healthcare organizations must implement HIPAA compliant email rules to protect patient privacy, secure sensitive health information, and comply with...

Read More
HIPAA compliant approaches to patient data backup and recovery

2 min read

HIPAA compliant approaches to data backup and recovery

HIPAA compliant approaches to patient data backup and recovery should involve identifying protected health information (PHI), conducting risk...

Read More
HIPAA compliant communication strategies for psychologists

3 min read

HIPAA compliant communication strategies for psychologists

HIPAA compliant communication for psychologists involves using secure tools (encrypted email and messaging apps), obtaining patient consent,...

Read More
Data minimization and HIPAA

2 min read

Data minimization and HIPAA

Data minimization contributes to HIPAA compliance by ensuring that only the minimum necessary amount of protected health information (PHI) is...

Read More
The basics of HIPAA compliance

5 min read

The basics of HIPAA compliance

HIPAA compliance involves protecting patient health information through the key regulations: the Privacy Rule, the Security Rule, and the Breach...

Read More
The OCR on using facility access controls

2 min read

The OCR on using facility access controls

In August 2024, the OCR released a cybersecurity newsletter on the role of facility access controls under the HIPAA Security Rule. The newsletter...

Read More