福利姬视频

HIPAA Government Resources

HIPAA is the federal Health Insurance Portability and Accountability Act of 1996. The HIPAA Privacy rule provides federal protections for individually identifiable health information and gives patients an array of rights with respect to that information. The goals of the statute include making it easier for people to keep health insurance, protect the confidentiality and security of healthcare information, and help the healthcare industry control administrative costs.

Compiled below are links to federal government resources about the HIPAA rules.

Covered Entities

Are You a Covered Entity?

Notice of Privacy Practices

Notice of Privacy Practices for Protected Health Information

Model Notices of Privacy Practices (English and Spanish)

Permitted Uses and Disclosures

Permitted Uses and Disclosures:  (PDF)

Permitted Uses and Disclosures:  (PDF)

Business Associates

Business Associates

Sample Business Associate Agreement Provisions

Patients' Families, Friends, and Personal Representatives

Communicating with a Patient’s Family, Friends, or Others Involved in the Patient’s Care

Personal Representatives

De-Identifying Patient Information

Guidance Regarding Methods for De-identification of Protected Health Information in Accordance with the Health Insurance Portability and Accountability Act (HIPAA) Privacy Rule 

Law Enforcement

Health Insurance Portability and Accountability Act (HIPAA) Privacy Rule:  (PDF)

Emergency Preparedness

Emergency Preparedness Planning and Response

Disclosures for Emergency Preparedness - A Decision Tool

Incidental Uses and Disclosures

Incidental Uses and Disclosures

Minimum Necessary

Minimum Necessary Requirement

Treatment, Payment, and Health Care Operations

Uses and Disclosures for Treatment, Payment and Health Care Operations

Marketing Communications

Marketing

The HIPAA Privacy Rule and Refill Reminders and Other Communications about a Drug or Biologic Currently Being Prescribed for the Individual

Public Health

Disclosures for Public Health Activities

Research

Research

Deceased Patients 

Health Information of Deceased Individuals

Immunization

Student Immunizations

Mental Health

HIPAA Privacy Rule and Sharing Information Related to Mental Health

HIPAA Audits

HIPAA Privacy, Security, and Breach Notification Audit Program

Workers' Compensation

Disclosures for Workers Compensation Purposes

Government Access

Restrictions on Government Access to Health Information

General Information about Privacy Rule Topics

 (PDF)

This publication has links to government resources on:

  • Consent forms
  • Incidental disclosures
  • Email, telephone, and fax
  • Communications between health care professionals and patients’ families and friends
  • Child abuse reporting
Breach Notification Rule

Breach Notification Rule

Security Rule

HIPAA Security Series:

  1. Security 101 for Covered Entities
  2. Security Standards: Administrative Safeguards
  3. Security Standards: Physical Safeguards
     
  4. Security Standards: Technical Safeguards
     
  5. Security Standards: Organizational, Policies and Procedures and Documentation Requirements
     
  6. Basics of Security Risk Analysis and Risk Management
      More information on security risk analysis (also referred to as “security risk assessment”):
    • Top 10 Myths of Security Risk Analysis

    • Security Risk Assessment Tool

  7. Security Standards: Implementation for the Small Provider
Resources from the Office for Civil Rights (OCR)

OCR is the federal agency that enforces HIPAA. The OCR Health Information Privacy website, , offers numerous resources on HIPAA compliance, such as:

Frequently Asked Questions

Unofficial Combined Regulation Text of All Rules

Sign Up for the OCR Privacy & Security Listserv

OCR has posted HIPAA educational videos on YouTube:
https://www.youtube.com/user/USGovHHSOCR

For consumers, OCR offers factsheets about individuals’ rights under the HIPAA Privacy Rule:

General Information on Privacy and Security Topics

The following resources, from federal government agencies other than OCR, offer information about health information privacy and security topics.

 (PDF)

 (PDF)

 (PDF) - The protection of data and systems in networks that connect to the Internet - 10 best practices for the small healthcare environment

Mobile Devices

  •  (PDF)
  •  (PDF)
  •  (PDF)