waiting room

2 min read

What providers must know about HIPAA and patient sign-in sheets

Patient sign-in sheets and name-calling in waiting rooms are allowed under the Health Insurance Portability and Accountability Act (HIPAA). Still, providers must adhere to the minimum necessary standard and use reasonable safeguards to protect...

Read More
smart home floating digital icons

1 min read

Smart home device maker exposes billions of records

The Chinese company left a large database unprotected, resulting in 2.7 billion records becoming available online.

Read More
iphone

1 min read

Is Apple iCloud HIPAA compliant? (2025 update)

Based on our research, Apple iCloud is not HIPAA compliant because it does not meet the requirements set by the U.S. Department of Health and Human...

Read More
security lock over computer screen

2 min read

Consultants in Pain Medicine sends breach notice 7 months later

On February 18, 2025, Consultants in Pain Medicine (CPM) disclosed that a data breach occurred between June and July last year, compromising...

Read More
caduceus on document

3 min read

Which HIPAA rules are most open to interpretation?

“A neurologist arrives on a medical ward to perform a consultation. All the charts on the chart rack are turned facing the wall so that no names are...

Read More
nebraska state seal

1 min read

Nebraska bill seeks to limit class action lawsuits

The bill is specifically trying to limit when class action lawsuits can be filed following a data breach.

Read More
cloudflare homepage

1 min read

Is Cloudflare a HIPAA compliant cloud vendor? (2025 Update)

Based on our research, Cloudflare is HIPAA compliant because it meets the requirements set by the U.S. Department of Health and Human Services (HHS)...

Read More
file drawers

3 min read

When does old family medical history lose HIPAA protection?

According to the Department of Health and Human Services, “When a covered health care provider, in the course of treating an individual or otherwise,...

Read More
nurse graphic

3 min read

What is nurse delegation?

Nurse delegation when a registered nurse transfers responsibility for performing a nursing task to a competent individual while retaining...

Read More
paper shredder

2 min read

Can a covered entity hire a business associate to dispose of PHI?

According to the Department of Health and Human Services’ FAQ about the Disposal of Protected Health Information, “a covered entity may, but is not...

Read More
surveymonkey sign

1 min read

Can I use SurveyMonkey and be HIPAA compliant? (2025 update)

Based on our research, SurveyMonkey is HIPAA compliant because it meets the requirements set by the U.S. Department of Health and Human Services...

Read More
two people shaking hands

1 min read

What is a business associate?

A business associate is a person or entity that performs functions or activities on behalf of, or provides services to, a covered entity (such as a...

Read More
cisa logo

2 min read

How the CISA email and web security guidance contribute to email practices

The Cybersecurity and Infrastructure Security Agency (CISA) provides comprehensive recommendations that align closely with the requirements of the...

Read More