|

Introduction
If
you’ve come to the HIPAAeasy website, you're probably researching
the best way to guide your health-care clients into compliance with the Privacy
Practices Documentation and Communication requirement of HIPAA. We work with
healthcare attorneys who know a great deal about HIPAA – and with
attorneys who are still educating themselves on the matter.
We’ve seen all kinds of HIPAA products – many make us wonder
if the people who created them have even read the HIPAA statutes. At HIPAAeasy we have immersed ourselves in the statutes and have created a system
that is truly compliant while being both patient and provider-friendly.
All our products were created to deal with specific areas of the HIPAA
regulations. We invite you to have a look at the
PAGE where we list our products alongside
citations of the specific relevant HIPAA regulations they were developed
to deal with.
Moreover, our products work together in an easy-to-implement system that will
significantly lessen the likelihood of compliance breaches.
If your clients are procrastinating instead of implementing a system of
HIPAA compliance, our easy-to-implement HIPAAeasy System will get them
moving.We
say that we’re the best choice. Here’s why:
The Best Choice: Our Notices Are More Legally Complete
• Our
Notices contain the required summary of state privacy regulations
that preempt Federal privacy regulations. (We individually
customize the Notices to the state where the health-care
practice
is located.) You won’t find this legally mandated information [45 CFR 164.520.(b)(ii)(C)]
in HIPAA Notices offered by others. They’re selling defective
Notices, to the peril of their customers.


• Our Privacy Posters contain the same information as the Notices. These
posters fulfill the requirement in 45 CFR 164.520.(c)(iii)(B)
that the Privacy Notice must be posted in areas in the Healthcare Practice
where the
public will be likely to see it. Like our Notices, the posters contain
the required
personalization
information, effective date and the state preemptions for the
state in which
the practice operates, required elements that are missing in
posters offered
by others.
The Best Choice: We Simplify Compliance
With Complicated Rules
• HIPAA requires that many different actions
and requests be documented in writing. Our kits contain 16 administrative
forms that will provide uniformity and accuracy of compliance.
We developed these forms to simplify compliance. They are thoroughly
integrated, they contain all the mandatory language and specifically
required disclosures. The typical practice does not have the in-house
expertise to research and properly draft these forms, and certainly
not the time. That is our business.
• With our easy-to-use forms the work will always get done
correctly and then filed properly, and the staff will require
minimal training. As you know, much HIPAA compliance documentation
must be furnished upon demand of patients and regulators. With
HIPAAeasy’s administrative support forms, the required documentation
will get done.
• Where relevant, the forms also contain guidance for the patients and, very importantly, explain the actions that must be taken by the patient and the office staff. They explain the nature and limits of the rights the patient is exercising and the boundaries within which the Practice must operate. This lowers the likelihood of time-consuming, and possibly costly, misunderstandings. Regulatory violations by the staff become far less likely. (The descriptive names of the Administrative Support Forms are listed at the bottom of this page, along with the regulations they are designed to comply with.)
• Documentation containing information about patients' specific
privacy requests should be easy for the staff to find. Our color-coded
forms are much easier to locate in the chart, and throughout the
office, than yet another nondescript white piece of paper.
The Best Choice: Our Business Associate Agreement is Better
HIPAA
requires that an agreement must be in place between covered entities
(such as medical practices) and their business associates (who are not
covered
entities themselves) to whom the practice may need to disclose PHI in order
for them to carry out services for the practice in the ordinary course of business.
The Business Associate Agreement (BAA) requires that business associates must
document and maintain an accounting of all disclosures of Protected Healthcare
Information (PHI). These logs will have to go back 6 years, starting from April
14, 2003. Your clients are obligated to produce this documentation on demand.
Imagine trying to collect such logs from current and former business associates
years after they were made, if they were made at all. Unlike the BAA’s
offered by other suppliers, the agreement we provide in the HIPAAeasy System
kit obligates business associates to document such disclosures and notify your
client at the time of disclosure, giving your client control of this very important
documentation, and assuring that it gets done in the first place.
The Cure For
The Procrastinating Client
With so many medical practices still procrastinating about HIPAA compliance,
our simple out-of-the-box solution will make it easy for your clients
to get off the dime and comply. Our pre-printed and personalized forms are
ready to use right out of the box. Your clients can concentrate on what they
do
well, which is providing health care. (There are some disk-based cut-and-paste-and-print-it-yourself
kits out there. If your clients ever get around to actually implementing
such a solution, their Notices would still be incomplete. Remember those
pesky state preemptions we mentioned above?)
By employing our full HIPAAeasy System, your client leaves no doubt about
having a robust program of compliance with the Privacy Practices Documentation
and Communication requirement of HIPAA.
Should the Secretary, or any other stakeholder cast an interested eye
on your client, they might even come away wondering why everyone isn’t
using the HIPAAeasy System.
You and HIPAAeasy – The Right Team
By teaming up with us you provide your clients with an efficient, cost effective,
complete system for compliance with the Privacy Practices Documentation
and Communication requirement of HIPAA. Your clients will greatly appreciate
being pointed toward a simple solution.
We save you the arduous task of researching and constructing these forms
so that you may employ your time providing training, integration and review,
and keeping your clients informed of the latest legal information. When your
clients use the HIPAAeasy System you can focus on exceptional circumstances
rather than routine compliance, so that you may provide a service that will
have a higher value to the client.
The HIPAAEasy Advantage
The distinctive appearance and unique identification number
printed on both Notice of Privacy Practices form, and its companion
Acknowledgment form are powerful risk management tools which virtually
eliminate patient “deniability” in legal proceedings
where receipt of the required privacy Notice is in issue. Experienced
health care lawyers have acknowledged that these elements, which
are unique to the HIPAAEasy System, effectively refute for the fact-finders
any claim by a patient that the required Notices were not given.
Presentation of a sample of the attractive, multi-colored Notice,
together with the Acknowledgment form containing a “serial
number” identical to the one printed on the Notice actually
given to the patient at the time of service, are powerful and incontrovertible
evidence of your client’s compliance with the law.
HIPAAeasy can offer you opportunities to co-brand your law firm with the
leading provider of HIPAA documentation. Call us at 1-800-995-2001 for details.
A
number of attorneys and consultants who speak and educate on the subject
of HIPAA recommend HIPAAeasy in their presentations. We’re happy
to supply a PowerPoint presentation on the HIPAAeasy System to HIPAA educators
and speakers.
We can also provide images for PowerPoints, educational materials,
handouts
and leave-behinds for HIPAA educators.Send Your Clients To HIPAAeasy
If you want to point your clients in our direction, either have them call
us at 1-800-995-2001, or CLICK HERE and
we’ll
help you generate an email that will make it easy for them to link
over to us.
What our Notices do not address
Because most health care providers are not engaged in the following activities,
we do not normally address them in our Notices:
• Fund raising and marketing
activities. (Practice promotion and patient education is not considered
marketing under HIPAA.)
• The special circumstances of hospital and other in-patient settings.
• Mental health and substance abuse treatment provisions.
• The Organized Health Care Agreement (OHCA) disclosures.
• State preemptions
for multiple states.
We can provide content for these topics upon request. In addition, if you have specific language that you would like incorporated in the Notice for your clients please let us know.
HIPAAeasy's Administrative Support Forms
|
Form
Key |
Form Name (click name to view form) |
Regulation |
|
D
|
Confidential Communications Request |
45 CFR §164.522 (b) |
|
E
|
PHI Disclosure Restrictions/Termination |
45 CFR §164.522 (a) |
|
G
|
Patient Request For PHI Access |
45 CFR §164.524 (a) (1), (b) |
|
H
|
PHI Release Authorization |
45 CFR §164.508 (c) |
|
I
|
PHI Disclosure Determination Worksheet |
45 CFR §164.502 (b) & (c) & (g) & (h)
164.514 (d) & (h)
164.508 (b)
164.530 (c) (1) |
|
J
|
PHI Disclosure Accounting Log |
45 CFR §164.528 (b) |
|
K
|
Request For PHI Disclosure Accounting |
45 CFR §164.528 (a&c) |
|
L
|
Request To Amend PHI |
45 CFR §164.526 (b) (1) |
|
M
|
Response To Patients Req. To Amend PHI |
45 CFR §164.526 |
|
N
|
Patients Statement of Disagreement |
45 CFR §164.526 (1) (ii) & (d) (2) |
|
O
|
Notice of Amendment to Patient's PHI |
45 CFR §164.526 (c) (3) |
|
P
|
Notice of Patient Privacy Complaint |
45 CFR §164.530 (d) |
|
Q
|
Privacy Complaint Investigation |
45 CFR §164.530 (d), (e), (f) |
|
R
|
Response to Patient Privacy Complaint |
45 CFR §164.530 (d) |
|
S
|
Privacy Memorandum |
45 CFR §164.530 (J) (1) (ii) & (iii) |
|
T
|
Request to verify Recipient/Secure Fax |
45 CFR §164.530 (c) |
|
U
|
Fax Cover Sheet |
45 CFR §164.530 (c) |
MORE on HIPAAeasy’s
Administrative Support Forms
|