DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

AHIMA Files Response to HHS Privacy Rules

Posted on September 13, 2010 by Dissent

Press release from AHIMA:

“While AHIMA continues to applaud federal government support for the ideal of protecting patients’ health information rights, the proposed rule-making for HIPAA privacy, security and enforcement by HHS has a number of requirements that we do not believe the industry is ready to undertake; especially as it gears up for Meaningful Use. Today AHIMA is releasing its recommendations to the HHS Office of Civil Rights (OCR) that speak to the issues we believe are most critical to the patients of America, the healthcare industry and the best practice of health information management.

“As staunch supporters of patients’ health information rights, AHIMA agrees the single most contentious issue in the proposed regulation is the ability of individuals to restrict the information held by their healthcare providers from being shared with their health plan. While AHIMA believes an individual’s control over this data flow is valid, data flow restrictions in the HHS proposal creates unintended repercussions for data integrity, data processing and other elements within the current US reimbursement system.

“Many AHIMA members are engaged in providing patients’ individual and aggregate data for a variety of approved uses. There is a continued discussion within the profession on how to best cover the costs of the retrieval, analysis and release of information within the context of the privacy and security regulations, patient restrictions; and the need to verify the requesting individual as a means of keeping released information available to a necessary minimum. Additionally, we remain concerned the charges permitted by states or HIPAA do not cover all costs and ultimately raise the cost of health care.

“AHIMA also questions the sale of patient health information when an organization is being absorbed by a second organization. The OCR’s approach, while practical, raises the issue of whether consumers have the right to determine if their health information should be transferred with the ownership of a health organization.

“Finally, AHIMA feels strongly that the OCR needs to provide greater clarification regarding the definition of ‘agents’ as it relates to covered entities and who should be covered by HIPAA, including its hybrid organizations.”


Related:

  • System Status Note
  • Fraudster's fake data breach claims should remind media to be careful what we report
  • "Pompompurin" taken into custody after violating conditions of pre-sentencing release on bond (1)
  • Multiple Ohio schools receive threats, believed to be Russian hackers, saying bombs are in schools
  • Founder and Majority Owner of Cryptocurrency Exchange Pleads Guilty to Unlicensed Money Transmitting
  • Leader of $70M Cryptocurrency and Binary Options Fraud Schemes Extradited to the U.S.
Category: Uncategorized

Post navigation

← Follow-up: Lawsuit filed over horrific student records breach
ACH Case: Headed to Trial? →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Threat actors have reportedly launched yet another campaign involving an application connected to Salesforce
  • Russian hackers target IVF clinics across UK used by thousands of couples
  • US, allies sanction Russian bulletproof hosting services for ransomware support
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • Large medical lab in South Africa suffers multiple data breaches
  • Report released on PowerSchool cyber attack
  • Sue The Hackers – Google Sues Over Phishing as a Service
  • Princeton University Data Breach Impacts Alumni, Students, Employees
  • Eurofiber admits crooks swiped data from French unit after cyberattack
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Closing the Privacy Gap: HIPRA Targets Health Apps and Wearables
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.