HIPAA: Obtain Authorizations Before Cameras Roll

Subscribe or sign in to view the full article.

Note:  The following article synopsis was NOT provided by AAPC. It was created by Find-A-Code/innoviHealth.

Article Overview

This article covers HIPAA privacy requirements during the COVID-19 era, with emphasis on when healthcare organizations need patient authorization before allowing media or film crews access to areas where protected health information may be accessible. It also discusses the distinction between consent and authorization, general OCR guidance, and the standard elements required for valid HIPAA authorization forms. The content is relevant to compliance staff, providers, administrators, and anyone responsible for privacy practices in covered entities.

Why This Topic Matters

Healthcare organizations may face privacy risk when media presence intersects with patient care areas, especially during public health emergencies. Understanding the general HIPAA authorization framework helps organizations support patient privacy and maintain compliance efforts.

Article Sections

  1. Privacy requirements still matter in a pandemic

    Introduces HIPAA privacy concerns arising from increased media activity in healthcare settings during the COVID-19 public health emergency. It frames the article’s focus on patient privacy, covered entities, and OCR reminders.

  2. ‘Consent’ and ‘Authorization’ Are Not the Same

    Explains the general distinction between routine patient consent and written authorization under HIPAA. This section addresses how the article uses those terms in the context of privacy and disclosure.

  3. See the Feds’ Reasoning for Extra Guidance

    Summarizes why OCR issued additional guidance and how the article describes media access, facility privacy concerns, and related compliance reminders. It also discusses broad safeguards and the role of facility policies.

  4. Add ‘Core Elements’ to HIPAA Authorization Forms

    Reviews the article’s discussion of the general standards that make a HIPAA authorization form valid. It covers the broad categories of form content and documentation expectations.

What You Will Learn

  • How HIPAA privacy concerns can arise when media access occurs in healthcare facilities
  • The difference between patient consent and HIPAA authorization in general terms
  • Why OCR issued additional guidance during the COVID-19 public health emergency
  • What broad categories of information are expected in valid HIPAA authorization forms
  • What compliance staff should consider when reviewing privacy procedures and authorization practices

Who Should Read This

  • Healthcare compliance professionals
  • Privacy officers
  • Hospital administrators
  • Providers and facility managers
  • Health information management staff
  • Legal and compliance teams

Subscribe or sign in to view the full article.

Keep pace with evolving Medicare regulations — and onboard your team — with timely analysis of critical updates interpreted in an easy-to-follow, easy-to-apply format. Your subscription to TCI's Medicare Compliance & Reimbursement Alert will equip you to navigate code and guideline changes, CCI edits, and revisions to modifiers, payer policies, the fee schedule, OIG target areas, and more.

  • Current newsletters added each month
  • Fully searchable archives - over 4200 articles
  • ALL years/issues back to 2003 organized by year and issue
  • Codes mentioned in articles are linked to Code Information pages
  • Code Information pages link back to related articles

This feature is currently unavailable for online purchase. For more information, please call 801-770-4203 or Contact Us.

Thank you for choosing Find-A-Code, please Sign In to remove ads.

Aimee- AI -powered coding assistant - Try it now for Free Would you like Aimee - AI
to help you with this?