According to this we are not a covered entity. We don't provide medical care so we are not a provider. We aren't a health plan or a governemnt program. I was less sure about a clearing house but it looks like they aer taking about companies that do claims processing. On the third hand thsi website seems to be written by a vendor -- though wou would think that if anything they would err on the side of telling me I need their products.
I am still interested in any comments people may have about this, but it is no longer looking to me like something that was supposed to already be done. It is good that someone brought it up though. This way if asked about our compliance I won't go huh? and look all slack-jawed.

Dana

>http://www.hipaacomply.com/
>
>
>ok we are having a huge flap over HIPAA compliance, has anyone here previously
>researched this topic?
>
>My burning question: If I have patient data in a SQL or mySQL database on a
>commercial host, is this adequate security for HIPAA purposes? Authentication is
>required for the hosting account and for the database itself.
>
>Anyone have any resources on this?
>
>Thanks
>Dana
[Todays Threads] [This Message] [Subscription] [Fast Unsubscribe] [User Settings]

Reply via email to