Addressing HIPAA Compliance with Gather Records

Your Questions... Answered!

How do other agencies ensure HIPAA compliance when handling and storing GC medical records? Are there specific applications or services they use?

If agency is not using Orchid, they should use a HIPAA certified software such as the following:

  • Google Cloud

  • Microsoft Azure

  • Amazon Web Services (AWS)

  • Dropbox Business

  • Box

  • Egnyte

  • Carbonite

  • IDrive

  • pCloud

  • Tresorit


If IPs request screening, prenatal, and delivery records before a contract is in place during the early match stages, how much, if any, of the surrogate's records can the agency share with them?

NONE.

The most that would be acceptable to share of the surrogate's records would be if the she does or does not meet ASRM guidelines and if they do or do not receive a letter of clearance from Maternal-Fetal Health.

With the recent surge in HIPAA-related questions, we want to emphasize that as the industry's leading records collection and review service, Gather is dedicated to helping you navigate the critical responsibility of protecting health information.

๐Ÿ”’โœ‰๏ธ When handling sensitive information via email, i.e. medical records, always use encrypted communication, verify recipient details, limit the data shared, and password-protect attachments. Ensure all staff are regularly trained on HIPAA guidelines to maintain compliance and protect privacy in every interaction.

๐Ÿ”’๐Ÿ“ Surrogate medical records contain private health information that is protected under HIPAA. Sharing these records directly with intended parents can violate the surrogate's privacy rights and lead to potential legal issues. It's essential to handle these records through secure, authorized channels like @OrchidSoftwareSolutions to ensure confidentiality and maintain trust between all parties involved.

If you donโ€™t want the headache of navigating HIPAA compliance, letโ€™s chat about what Gather can do for you. Rest assured records stored with Gather are secure in a HIPAA compliant manner.