HIPAA Tip: HIPAA Changes Coming in 2024

The proposed rule, or Notice of Proposed Rulemaking (NPRM), is the official document that announces and explains the agency’s plan to address a problem or accomplish a goal.

HIPAA NPRM was released in January, 2021. The final rule date is currently unknown but finalization and release is expected some time in 2024, with compliance due this year. Some are merely changes in definition(s) while others will require our attention when they become a rule. Listed below are some highlights.

  • Adding definitions for the terms Electronic Health Record.
  • Strengthening individuals’ rights to inspect their PHI in person and being allowed to take notes or use other personal resources to view and capture images of their PHI.
  • Shortening a Covered Entitie’s required response time to a patient’s request for their medical records from 30 days to no later than 15 calendar days; and clarifying the form and format required for responding to individuals’ requests for their PHI.
  • Eliminating the requirement to obtain an individual’s written acknowledgment or receipt of the provider’s Notice of Privacy Practices.
  • Covered Entities will be required to post estimated fee schedules on their websites for PHI access and disclosures, and to provide individualized estimates of the fees for providing an individual with a copy of their PHI.
  • Definition of healthcare operations has been broadened to cover care coordination and case management.
  • Good faith standard – exercise of professional judgement would be replaced with “good faith belief” removing disclosure by a professional.

HIPAA compliance isn’t a one-time checklist. It’s ongoing, programmatic in nature, and requires demonstrated reasonable diligence to stay in good standing with the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR). Anatomy IT can provide you peace of mind with our expert HIPAA compliance services. To learn more, contact us here.


Dawn Meglino

HIPAA Compliance Specialist, CHPSE, CCSA, CCAP