What Is Considered PHI Under HIPAA? A Field Guide
A hospital receptionist emails a patient's lab results to the wrong address. A dental office posts a before-and-after photo on Instagram — with the
A collection of 6 posts
A hospital receptionist emails a patient's lab results to the wrong address. A dental office posts a before-and-after photo on Instagram — with the
A Receptionist, a Printer, and a $1.5 Million Penalty In 2018, a medical center employee left a stack of patient lab results sitting on
A hospital receptionist in Texas once emailed a spreadsheet of 800 patient names, birth dates, and insurance IDs to the wrong clinic. Within 72 hours,
A Single Phone Number Cost This Health Plan $6.85 Million In 2018, Premera Blue Cross agreed to pay $6.85 million to the Office
A community hospital in Yakima, Washington lost an unencrypted laptop in 2013. That single device held the electronic protected health information of 524 patients. The
During a 2023 OCR investigation, a mid-sized cardiology practice received a $1.5 million penalty — not because of a sophisticated cyberattack, but because staff routinely
Join healthcare organizations that trust HIPAA Certify for their workforce training and compliance tracking.