Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why is this not a HIPAA violation?

HIPAA is a US law that's focused on protecting the privacy of a person's medical history. In SQL terms you can't JOIN a person's identity with their medical history (unless explicitly authorized). However aggregated data is allowed, as long as it can't be easily reverse-engineered.



You acknowledge that HIPAA doesn’t allow identifying specific patients. Are you under the impression that she named a identified a specific person in that article?


Sorry, I should have edited. This is why the article is NOT a HIPAA violation. Damn you slack distractions




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: