AHIMA March 17, 2021
Hospitals, health systems, and physician practices need to focus on how they will safely and securely collect, exchange, and protect data as they use application programming interfaces (APIs).
Although the intent of API technology is to enable smooth information exchange between diverse health IT systems, poorly designed third-party applications that don’t follow standard guidelines can present patient privacy and data security risks when interfacing with a healthcare organization’s system of record.
Organizations need to have a plan for mitigating these risks while also avoiding situations that could be perceived as information blocking—intentionally withholding patient health information.
Even though the compliance dates for the interoperability rule keep shifting due to the pandemic, it is critical that healthcare organizations create the framework...