 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
| § |
Federal
regulation under the Health Insurance Portability
|
|
|
and
Accountability Act of 1996 (HIPAA) (amended in
|
|
|
2002
before it took effect)
|
|
|
| § |
Applies
only to “covered entities” which are health plans,
|
|
|
health
care providers, including hospitals, business
|
|
|
associates
of covered entities using PHI data, health
|
|
|
care
clearinghouses (i.e., public or private organizations
|
|
|
that
handle billing or management of health care delivery
|
|
data),
Rule was implemented for most parties on April
|
|
|
14,
2003
|
|
|
| § |
The
privacy rule also known as Standards for Privacy of
|
|
|
Individually
Identifiable Health Information
|
|
|
|
– |
Code
of Federal Regulations Title 45, Part 160 and 164
|
|
|
|
– |
Full
text available at the Federal HIPAA Privacy Website
|
|
|
http://www.hhs.gov/ocr/hipaa
|
|