Lexology January 8, 2025
Reed Smith LLP

The use of third-party trackers to power data-driven marketing continues to present regulatory and class action risk for managed care organizations. A primary factor relating to increased risk for MCOs was the bulletin released by the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR), which described potential HIPAA noncompliance arising from the use of third-party trackers. In March 2024, OCR revised the bulletin, and part of it was vacated by a federal district court. But recent guidance from federal regulators indicates that risks remain. In light of this risk, managed care organizations should ensure they evaluate their use of third-party tracking technologies.

Why did OCR revise the bulletin?

The bulletin, originally released in December 2022,...

Today's Sponsors

LEK
ZeOmega

Today's Sponsor

LEK

 
Topics: Govt Agencies, Healthcare System, HHS, HIPAA, Insurance, Payer, Privacy / Security, Provider
The Dangers Of Oversharing: Quick Privacy Tips To Stay Safe
HIPAA Compliance in the Age of Big Data: Ensuring Patient Privacy in Healthcare Data Analytics
New Reproductive Health Privacy Rules
iOS 18.2—What To Know About ChatGPT Siri Integration And Your Privacy
Every Choice Matters: Data Security And Privacy On AI-Enabled Apps

Share This Article