HIPAA Flashcards
(16 cards)
According to HIPAA, a patient has six rights. Name each.
1) Right of Notice
2) Right to Request Restrictions
3) Right to Receive Confidential Communications by Other Means/Locations
4) Access to Records
5) Right of Amendment
6) Right of Accounting
Describe the HIPAA Right of Notice
A patient has the right to be notified of the provider’s privacy policy provided in written form
Describe the HIPAA Right to Request Restrictions
A provider must agree to “reasonable requests” to restrict the use or disclosure of PHI
Describe the HIPAA Right to Receive Confidential Communications by Other Means/Locations
A patient may request and receive communications and materials via other means in order to protect their confidentiality
Describe the HIPAA Right to Access Records
A patient may inspect and receive copy of PHI that is part of their medical record
Additional info: Providers have five working days from a written request to comply
Describe the HIPAA Right of Amendment
A patient may request PHI changes
Additional info: the provider must document date and nature of the request and add the changes as an amendment – they cannot change the record
Describe the HIPAA Right of Accounting
Patients may receive an accounting of all disclosures of their PHI for the past 6 years
Additional Info: accounting includes the date, nature of disclosure, to whom the PHI was shared, and why
Generalized Consent
Patients must be informed of the provider privacy policy, but written consent is not required
Authorization
Must obtain patient permission to disclose information on a release of information form
HIPAA Administrative Sanction
A penalty by the Office of Civil Rights of Health and Human Services
HIPAA Civil Penalty
A penalty of $100 for each violation up to $25,000/year
HIPAA Fines
A penalty up to $250,000/year or 10 years imprisonment or both for deliberate/knowing of patient privacy violations
HIPAA 3 Rules
1) Privacy Rule
2) Transaction Rule
3) Security Rule
HIPAA Privacy Rule
HIPAA provides regulations and safeguards regarding confidential patient information
HIPAA Transaction Rule
HIPAA requires a nationally standardized format for all electronic health records (claims) such as software and clearinghouses
HIPAA Security Rule
HIPAA requires physical security and encrypting emails