|
This is a reminder that the Operating Committees of HEALTHeLINK and HEALTHeNET have approved revisions to their respective Privacy and Security Policies and Procedures, effective December 23, 2024.
This Notice is given pursuant to Sections 2.3, 3.4, and 3.5 of the HEALTHeLINK Participation Agreement Terms & Conditions and the Data Recipient Agreement Terms & Conditions for HEALTHeNET, which require 30 days' notice to all Participants prior to the effective date of any changes.
HEALTHeLINK Revisions (Effective December 23, 2024)
Glossary Updates: Aligning with SHIN-NY definitions.
New Additions:
- Statewide Consent Date
- Statewide Form of Consent
P03 Authorized User Access:
- Participants must verify the identity of their Authorized Users.
- HEALTHeLINK must verify the identity of their personnel.
- Community-Based Organizations (CBOs) not subject to HIPAA can access patient data with affirmative consent and minimum necessary standards.
P04 Patient Consent:
- Clarification that PHI can be shared with the Department of Health (DOH) without affirmative consent for certain purposes.
- Technical changes to accommodate the upcoming Statewide Consent initiative.
HEALTHeNET Revisions (Effective December 23, 2024)
P01 Authorized User Access:
- Data Suppliers/Data Recipients must verify the identity of their Authorized Users.
- HEALTHeNET must verify the identity of their personnel.
For more detailed information, you can review the current and revised policies on the respective websites:
|