Is Trello HIPAA compliant?
Trello is not HIPAA compliant and the platform cannot be used to receive, store, or share Protected Health Information due to a clause in Trello’s Terms of Services which prohibits customers using Trello to process sensitive personal information. However, provided the platform is not used to receive, store, or share PHI, Trello can help increase productivity. Owned by Atlassian, Trello offers a range of tools that help to coordinate workflows, facilitate collaboration between co-workers, and automate specific tasks. Such project-management platforms are increasingly popular solutions across a variety of organizations, and they have great potential for use in the healthcare sector. But before Trello is used to manage a project which includes the disclosure of PHI, covered entities must ensure Trello can be used in a HIPAA-compliant manner. This means the service must implement minimum security standards that ensure the safety, confidentiality, and accessibility of protected health information (PHI). This requirement is stipulated by the HIPAA Security Rule. Without these minimum...
When Should You Promote HIPAA Awareness?
HIPAA awareness should be promoted whenever possible by integrating HIPAA-related tasks into daily routines and sharing responsibilities for events such as obtaining an acknowledgement of a Notice of Privacy Practices or documenting a patient’s request to withhold disclosures of PHI. However, the most practical time to promote HIPAA awareness is during HIPAA training. HIPAA training should ideally be provided before any employee is given access to PHI. HIPAA-covered entities, business associates and subcontractors are all required to comply with HIPAA Rules, and all workers must receive training on HIPAA. Training should cover the allowable uses and disclosures of PHI, patient privacy, data security, job-specific information, internal policies covering privacy & security, and HIPAA best practices. The penalties for HIPAA violations, and the consequences for individuals discovered to have violated HIPAA Rules, must also be explained. If employees do not receive training, they will not be aware of their responsibilities and privacy violations are likely to occur. Additional...
HIPAA Compliant Instant Messaging
HIPAA compliant instant messaging is a secure method of communication that requires minimal set up, configuration, and instruction, as most of the required safeguards are installed by default on mobile and desktop apps. Users will have little difficulty in understanding how to use the apps in compliance with HIPAA due to their similarity with popular consumer instant messaging apps. The Instant Messaging Revolution The first instant messaging services were introduced in the late 1990s and proved to be a popular method of communication. With 3G and the growth in use of mobile devices, instant messaging soared in popularity and changed the way people communicate. Today, instant messaging platforms allow users to send text messages, audio, video, and other files free of charge. With figures suggesting 72.2% of individuals in the United States have a smartphone, and the ability to use instant messaging services across a range of different devices, instant messaging really does mean it is possible to communicate with people in an instant, no matter where they are located. Instant...
What are the OSHA Emergency Action Plan Requirements?
The OSHA Emergency Action Plan requirements are that every qualifying employer must develop a Plan that meets minimum elements and must provide training on the Plan to key personnel. Qualifying employers must also implement and maintain an employee alarm system to alert employees to emergencies. The OSHA Emergency Action Plan Requirements The OSHA Emergency Action Plan requirements (as per §1910.38) are that qualifying employers must develop a plan that includes the following minimum elements: The procedures for reporting a fire or other emergency. The procedures for emergency evacuation, including type of evacuation and exit route assignments. The procedures to be followed by employees who remain to operate critical plant operations before they evacuate. The procedures to account for all employees after evacuation. The procedures to be followed by employees performing rescue or medical duties. The name or job title of every employee who may be contacted by employees who need more information about the plan or an explanation of their duties under the plan. The Plan must be written...
Investigation Highlights Ease at Which Police Can Access Pharmacy Records
On Monday, three Democratic Senators wrote to the Secretary of the Department of Health and Human Services (HHS) Xavier Becerra to express their concern about pharmacies disclosing prescription records to the police without a warrant. Sen. Ron Wyden (D-OR) and Reps. Pramila Jayapal (D-WA) and Sara Jacobs (D-CA) launched an investigation following the Supreme Court decision in Dobbs v. Jackson Women’s Health Organization, which removed the federal right to an abortion and left it to individual states to set their own laws on abortion. Many states have implemented bans or severe restrictions on abortions, which has resulted in women, and in some cases, children, traveling to more permissive states to receive the reproductive care they need, and there are growing fears that individuals who seek legal reproductive health care out of state may face prosecution in their home state. The HHS issued guidance on HIPAA and reproductive healthcare following the overturning of Roe v Wade, stressing that while the HIPAA Privacy Rule permits disclosures of PHI to law enforcement, the disclosures...



