Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So basically, if you obtain a copy of your own medical records and steganographically embed your private information into them, you're OK?


No, for two reasons.

1. HIPAA doesn't apply to you unless you're an employee of a covered entity, that is, a health care provider, health care plan, or a firm contracted by a member of the previous two categories to handle billing. You can hand out your private medical information to whomever you want without worrying about HIPAA.

2. Even if HIPAA did, it doesn't give you the power to refuse to disclose HIPAA data when such disclosure is required by law[1].

[1] 45 CFR 164.512 (a): http://www.publichealthlaw.net/Reader/docs/HIPAA.pdf




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: