What is “protected health information” under HIPAA?
Protected health information (PHI) means individually identifiable health information maintained or transmitted in any form, whether electronically, on paper or orally. However, PHI excludes individually identifiable health information in employment records kept by a covered entity in its role as an employer (such as OSHA 300 logs or First Report of Injury forms completed by an employer for reporting purposes). [45 CFR 164.
Related Questions
- Are healthcare software vendors "business partners or business associates" in the HIPAA definition? Do they receive "protected health information" to perform a function for a "covered entity"?
- How does the Health Insurance Portability and Accountability Act (HIPAA) restrict access to my health information?
- What is "protected health information" under HIPAA?