← Back to context

Comment by ethbr1

1 year ago

Is this true?

My understanding of HIPAA (possibly incorrect) is that it's attached to the data.

If a covered provider is leaking HIPAA covered data to a non-covered business associate entity... that's a big no-no and a fine.

There are criteria for which organizations are covered by HIPAA’s privacy protections. It is not attached to the data wherever the data goes.