MyHNE
HNEDirect
At Health New England, we understand the importance of improving health information access for our members. In compliance with federal guidelines developed by CMS, Health New England has made Patient and Provider Directory APIs (application programming interface) available for members who consent to have their data shared with third-party vendors. Please visit the website below for APIs, usage and other information.
It is important to take an active role in protecting your health information. Health New England provides the information below to ensure members know what to look for when choosing an app and make informed decisions about sharing their health care data.
What you can do to protect your health care data:
If the app’s privacy policy does not clearly answer these questions, you should reconsider using the app to access your health information.
Health information is very sensitive information, and members should be careful to choose apps with strong privacy and security standards to protect it.
The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) enforces the HIPAA Privacy, Security, and Breach Notification Rules, and the Patient Safety Act and Rule. You can find more information about patient rights under HIPAA and who is obligated to follow HIPAA here: https://www.hhs.gov/hipaa/for-individuals/guidance-materials-for-consumers/index.htm
HIPAA FAQs for Individuals: https://www.hhs.gov/hipaa/for-individuals/faq/index.html
Are third-party apps covered by HIPAA?
Most third-party apps will not be covered by HIPAA. Most third-party apps will instead fall under the jurisdiction of the Federal Trade Commission (FTC) and the protections provided by the FTC Act. The FTC Act, among other things, protects against deceptive acts (e.g., if an app shares personal data without permission, despite having a privacy policy that says it will not do so).
The FTC provides information about mobile app privacy and security for consumers here: https://www.consumer.ftc.gov/articles/0018-understanding-mobile-apps
To contact Health New England Compliance:
Email: compliancedepartment@hne.com
Call: Ethics/Compliance Hotline: (800) 453-3959
File a complaint with OCR:
Individuals can file a complaint with OCR using the OCR complaint portal:
https://ocrportal.hhs.gov/ocr/smartscreen/main.jsf
To learn more about filing a complaint with OCR under HIPAA, visit: https://www.hhs.gov/hipaa/filing-a-complaint/index.html
File a complaint with the FTC:
Individuals can file a complaint with the FTC using the FTC complaint assistant:
https://www.ftccomplaintassistant.gov/#crnt&panel1-1