PogoWasRight.org

Menu
  • About
  • Privacy
Menu

A tip for HIPAA-covered entities using Zoom

Posted on March 28, 2020June 24, 2025 by Dissent

HIPAA lawyer Jeff Drummond has a blog post about the concerns Consumer Reports raised about using Zoom. Jeff focuses on its use for those who are covered by HIPAA, and he has a  good tip for covered entities:

This highlights two things: think about the services your (sic) are using that get to view your information and find out what they can do with it (especially find out if they are actually doing it or deny doing it, even though they have the right to).  And make sure you get a BAA if (i) you are a covered entity under HIPAA and (ii) any of the information that the service comes into contact with might be PHI.

I’ve looked at Zoom’s BAA.  It’s ok (“meh”).  Doxy.me has a much better one.  But both are minimally sufficient.

UPDATE: one other thing: be the host, if you are the CE.

Read more on HIPAA Blog.

 

Related posts:

  • Should Amazon AWS’s termination of Parler’s contract make HIPAA-covered entities concerned?
Category: BusinessHealthcare

Post navigation

← Judge clears way for New Mexico suit over kid privacy claims
No, “triage” doesn’t mean that you get to discriminate against immigrants, the disabled, or any other group →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • Microsoft’s controversial Recall feature is now blocked by Brave and AdGuard
  • Trump Administration Issues AI Action Plan and Series of AI Executive Orders
  • Indonesia asked to reassess data privacy terms in new U.S. trade deal
  • Meta Denies Tracking Menstrual Data in Flo Health Privacy Trial
  • Wikipedia seeks to shield contributors from UK law targeting online anonymity
  • British government reportedlu set to back down on secret iCloud backdoor after US pressure
  • Idaho agrees not to prosecute doctors for out-of-state abortion referrals

RSS Recent Posts on DataBreaches.net

  • Scattered Spider is running a VMware ESXi hacking spree
  • BreachForums — the one that went offline in April — reappears with a new founder/owner
  • Fans React After NASCAR Confirms Ransomware Breach
  • Allianz Life says ‘majority’ of customers’ personal data stolen in cyberattack (1)
  • Infinite Services notifying employees and patients of limited ransomware attack
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy