What is Personal Health Information (PHI)?
HIPAA introduces a number of new concepts, the most important of which is PHI, or Protected Health Information. PHI is any information that relates to a person’s medical condition or payment for health care that identifies or might identify that person. In order to protect client privacy, HIPAA requires covered entities, including the department, to limit the amount of PHI that they request from clients or provide to others. In most cases, the department must get written authorization from clients before it can disclose their PHI. The department does not need authorization if the information: • Is necessary to provide appropriate medical treatment; • Was requested by the individual about himself/herself; • Is required to be reported to an entity by law; • Is required to be provided to comply with federal or state program mandates; or • Is required to pay medical claims.