What is the HIPAA Privacy Rule?
By: LawInfo
Published: 02/2009
Essentially, the Privacy Rule under the Health Insurance Portability and Accountability Act (“HIPAA”) sets forth your privacy rights to your medical and health information. The Privacy Rule defines who may have access to your medical information, and under what circumstances another person or organization can have access to that information.
The Privacy Rule applies only to “covered entities”, which include most health insurance plans and health care providers who might have your medical information, such as doctors, hospitals, nursing homes, and pharmacies. All of the information in your medical records, as well as conversations between doctors and other medical staff about your medical condition(s), are covered by the Privacy Rule. However, it is important to know that the Privacy Rule does not apply to many other organizations that might also have access to your medical information, such as law enforcement agencies, life insurance companies, school districts, and employers.
Under the Privacy Rule, covered entities must all have systems in place to protect your confidential medical information. In creating these privacy systems, covered entities must minimize the disclosure of your medical information, limit access to your medical information, use procedures to ensure that any contractors keep your medical information private, and implement training programs for their employees in order to educate them about safeguarding your medical information.
The Privacy Rule also gives you certain rights with regard to your medical information. For instance, covered entities must allow you to view and/or get a copy of your medical records, and make any corrections to those records that you request. Covered entities must give you a detailed explanation of their privacy practices each year, and you have a right to control how, when, and to whom your medical information is shared.
Plus, the Privacy Rules governs how your medical information may be disclosed. For example, a covered entity may release your medical information to other medical providers in order to properly treat you, or to protect the public’s health. Under the Privacy Rule, however, a covered entity may not release your medical information to your employer, or use your medical information for marketing or advertising without your knowledge and consent.
If you believe that a covered entity has violated the Privacy Rule with regard to your medical information, you can file a complaint with the entity itself, or file a complaint with the Office of Civil Rights (“OCR”) of the U.S. Department of Health and Human Services (“HHS”). Your complaint must be in writing, and must specifically identify the person that you believe violated the Privacy Rule. Generally, you must file a complaint within 180 days of the date that you knew or should have known of the violation, although the OCR can extend this deadline for good cause. While you don’t need to use a specific form to file a complaint under the Privacy Rule, you can use the OCR’s form to file a complaint, which you can request from your regional OCR office, or which you can find online at www.hhs.gov/ocr/privacy/hipaa/complaints/index.html. If you have questions about filing a complaint under the Privacy Act, you can also contact the OCR via e-mail at OCRMail@hhs.gov.
Other Health Law Articles
-
Your Right to Medical Privacy: HIPAA
In 1996, Congress passed the Health Insurance Portability and Accountability Act, commonly known as HIPAA. The law has many different elements including … More -
Medical Care for a Child
Most commonly, it is a parent or legal guardian who seeks medical treatment for a minor child, or a child under the age of eighteen. A parent or legal guardian … More -
What is the Consolidated Omnibus Budget Reconciliation Act (COBRA)?
COBRA is a federal law that allows employees and their families to temporarily continue coverage under employer-sponsored health insurance plans in certain … More -
How to Get the Medical Care That You Want When You are Unable to Communicate
Many people have specific ideas about the medical care that they want to receive if they become ill or injured. However, at the time an illness or injury strikes … More -
How to Revoke a Health Care Directive
You may have had very specific and very definite ideas when you drafted your living will, medical power of attorney, DNR order and / or advanced health care … More -
What is the Women’s Health and Cancer Rights Act of 1998 (WHCRA)?
The WHCRA is a federal law that provides women with certain rights after they have had a mastectomy, which is most commonly the result of breast cancer, but may be … More -
What is the Patient Safety and Quality Improvement Act of 2005?
The Patient Safety and Quality Improvement Act of 2005 is a federal law that has resulted from the federal government’s concern for the safety of patients … More -
Organ Donor Declarations
On the morning of July 21, 2009 the U.S. Department of Health and Human Services reported that there were 102,486 people waiting for organ transplants in the United … More -
How to Legally Prepare Yourself for Surgery
A person who is preparing for a scheduled surgery has a lot of details to consider. The person must comply with his doctor’s pre-surgical protocols, … More -
How do I appeal the denial of a Medicare claim?
If you file a claim with Medicare for a product or service related to your health care that you think Medicare should pay for, and Medicare denies your claim, or … More
Health Law Sub-categories
|
Health Benefit
Health Care Health Care Law HIPA- Health Insurance Portability and Accountability Act |
Litigation Attorney
Long Term Health Care Senior Health Care |
Attorneys for Medical Professionals
Attorneys In Your Area
-
Alpert Butler & Weiss, P.C.
West Orange, NJ
866-266-7905 -
Thomsen and Stephens, P.A.
Idaho Falls, ID
208-522-1230
Free Consultation