Skip to main content
S 1814 110th Congress Senate Health Administrative procedure Civil Rights and Liberties, Minority Issues Civil actions and liability Communication in medicine Confidential communications Crime and Law Enforcement Damages Department of Health and Human Services Department of Justice English language Fines (Penalties) Government Operations and Politics Government paperwork Governmental investigations Health information systems Injunctions Law Legal fees Medical records

Health Information Privacy and Security Act

Introduced: July 18, 2007 See on congress.gov
 Everywhere this bill has been 3 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Jul 18, 2007
Read twice and referred to the Committee on Health, Education, Labor, and Pensions. (text of measure as introduced: CR S9500-9513)
Jul 18, 2007
Introduced in Senate
Jul 17, 2007
Sponsor introductory remarks on measure. (CR 7/18/2007 S9499-9500)
 Plain-English summary Congressional Research Service

Health Information Privacy and Security Act - Requires a person who holds, uses, or discloses protected health information to: (1) permit an individual who is the subject of such information to inspect and copy the information; (2) establish safeguards and procedures to ensure the privacy, confidentiality, security, accuracy, and integrity of such information; and (3) establish and maintain a record of each protected health information disclosure.

Requires the Secretary of Health and Human Services to support demonstration projects to improve the communication of information pertaining to health privacy rights with individuals with limited English proficiency and limited health literacy.

Prohibits any person from disclosing, accessing, or using protected health information, except as authorized under this Act.

Requires the Secretary to develop and disseminate model written authorizations for the disclosure of such information.

Provides for notice to an individual of a security breach with regard to protected health information.

Sets forth purposes under which disclosure is permitted, including for public health, health oversight, and law enforcement purposes.

Directs the Secretary to designate the Office of Health Information Privacy to: (1) receive and investigate complaints of alleged violations of this Act; (2) provide guidance to health care providers and other relevant individuals concerning the interpretation and implementation of privacy protections; and (3) provide recommendations concerning improvements in the privacy and security of protected health information and concerning medical privacy research needs.

Requires the Secretary to establish and implement standards for health information technology products.

Sets forth criminal and civil penalties for knowing and intentional violations of this Act.

Provides that this Act does not preempt federal or state laws or regulations that provide greater protections.

What's happening now July 18, 2007

Read twice and referred to the Committee on Health, Education, Labor, and Pensions. (text of measure as introduced: CR S9500-9513)

 Committees of jurisdiction 1