25% off all training courses Offer ends May 29, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends May 29, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Steve Alder

Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

Is Trello HIPAA compliant?
Dec13

Is Trello HIPAA compliant?

Trello is not HIPAA compliant and the platform cannot be used to receive, store, or share Protected Health Information due to a clause in Trello’s Terms of Services which prohibits customers using Trello to process sensitive personal information. However, provided the platform is not used to receive, store, or share PHI, Trello can help increase productivity.   Owned by Atlassian, Trello offers a range of tools that help to coordinate workflows, facilitate collaboration between co-workers, and automate specific tasks. Such project-management platforms are increasingly popular solutions across a variety of organizations, and they have great potential for use in the healthcare sector. But before Trello is used to manage a project which includes the disclosure of PHI, covered entities must ensure Trello can be used in a HIPAA-compliant manner. This means the service must implement minimum security standards that ensure the safety, confidentiality, and accessibility of protected health information (PHI). This requirement is stipulated by the HIPAA Security Rule. Without these minimum...

Read More

When Should You Promote HIPAA Awareness?

HIPAA awareness should be promoted whenever possible by integrating HIPAA-related tasks into daily routines and sharing responsibilities for events such as obtaining an acknowledgement of a Notice of Privacy Practices or documenting a patient’s request to withhold disclosures of PHI. However, the most practical time to promote HIPAA awareness is during HIPAA training. HIPAA training should ideally be provided before any employee is given access to PHI. HIPAA-covered entities, business associates and subcontractors are all required to comply with HIPAA Rules, and all workers must receive training on HIPAA. Training should cover the allowable uses and disclosures of PHI, patient privacy, data security, job-specific information, internal policies covering privacy & security, and HIPAA best practices. The penalties for HIPAA violations, and the consequences for individuals discovered to have violated HIPAA Rules, must also be explained. If employees do not receive training, they will not be aware of their responsibilities and privacy violations are likely to occur. Additional...

Read More
HIPAA Compliant Instant Messaging
Dec12

HIPAA Compliant Instant Messaging

HIPAA compliant instant messaging is a secure method of communication that requires minimal set up, configuration, and instruction, as most of the required safeguards are installed by default on mobile and desktop apps. Users will have little difficulty in understanding how to use the apps in compliance with HIPAA due to their similarity with popular consumer instant messaging apps. The Instant Messaging Revolution The first instant messaging services were introduced in the late 1990s and proved to be a popular method of communication. With 3G and the growth in use of mobile devices, instant messaging soared in popularity and changed the way people communicate. Today, instant messaging platforms allow users to send text messages, audio, video, and other files free of charge. With figures suggesting 72.2% of individuals in the United States have a smartphone, and the ability to use instant messaging services across a range of different devices, instant messaging really does mean it is possible to communicate with people in an instant, no matter where they are located. Instant...

Read More
What are the OSHA Emergency Action Plan Requirements?
Dec12

What are the OSHA Emergency Action Plan Requirements?

The OSHA Emergency Action Plan requirements are that every qualifying employer must develop a Plan that meets minimum elements and must provide training on the Plan to key personnel. Qualifying employers must also implement and maintain an employee alarm system to alert employees to emergencies. The OSHA Emergency Action Plan Requirements The OSHA Emergency Action Plan requirements (as per §1910.38) are that qualifying employers must develop a plan that includes the following minimum elements: The procedures for reporting a fire or other emergency. The procedures for emergency evacuation, including type of evacuation and exit route assignments. The procedures to be followed by employees who remain to operate critical plant operations before they evacuate. The procedures to account for all employees after evacuation. The procedures to be followed by employees performing rescue or medical duties. The name or job title of every employee who may be contacted by employees who need more information about the plan or an explanation of their duties under the plan. The Plan must be written...

Read More

Investigation Highlights Ease at Which Police Can Access Pharmacy Records

On Monday, three Democratic Senators wrote to the Secretary of the Department of Health and Human Services (HHS) Xavier Becerra to express their concern about pharmacies disclosing prescription records to the police without a warrant. Sen. Ron Wyden (D-OR) and Reps. Pramila Jayapal (D-WA) and Sara Jacobs (D-CA) launched an investigation following the Supreme Court decision in Dobbs v. Jackson Women’s Health Organization, which removed the federal right to an abortion and left it to individual states to set their own laws on abortion. Many states have implemented bans or severe restrictions on abortions, which has resulted in women, and in some cases, children, traveling to more permissive states to receive the reproductive care they need, and there are growing fears that individuals who seek legal reproductive health care out of state may face prosecution in their home state. The HHS issued guidance on HIPAA and reproductive healthcare following the overturning of Roe v Wade, stressing that while the HIPAA Privacy Rule permits disclosures of PHI to law enforcement, the disclosures...

Read More
x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist