PogoWasRight.org

Menu
  • About
  • Privacy
Menu

U. of Iowa Issues Reminder About Use of artificial technology (AI) and HIPAA

Posted on October 29, 2023June 24, 2025 by Dissent

From the U. of Iowa, and kudos to them for educating and warning their employees:

As artificial intelligence (AI) continues to evolve, it is important to remember that most AI tools and services, including ChatGPT, are not HIPAA compliant. Therefore, it is not appropriate to use these tools or services in conjunction with patient protected health information (PHI).

In order to use application that processes, transmits, or stores patient information, such as an AI service, a proper security review, contracting, and business associate agreement must be completed. If you have a request to be able to use an AI system, please speak with your department director on how to pursue the request and initiate a security review.

Imputing patient information into an AI system could result in a HIPAA violation if the above conditions have not been met. For example, using ChatGPT to draft a patient letter or using an unapproved AI transcription service requires sharing of PHI with the application. Beware of these types of situations.

For additional information, please see IT Security Guidelines for the secure and ethical use of Artificial Intelligence.

Please contact the Joint Office for Compliance with questions at compliance[at]healthcare.uiowa.edu or 319-384-8282.

h/t, Becker’s Hospital Review

No related posts.

Category: Artificial IntelligenceHealthcareLaws

Post navigation

← Wrong legal interpretation in the health sector
Greek data watchdog to rule on AI systems in refugee camps →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • California Attorney General Announces $1.55M CCPA Settlement with Healthline.com
  • Canada’s Bill C-2 Opens the Floodgates to U.S. Surveillance
  • Wiretap Suits Pit Old Privacy Laws Against New AI Technology
  • Action against tiny Scottish charity sparks huge ICO row
  • Congress tries to outlaw AI that jacks up prices based on what it knows about you
  • Microsoft’s controversial Recall feature is now blocked by Brave and AdGuard
  • Trump Administration Issues AI Action Plan and Series of AI Executive Orders

RSS Recent Posts on DataBreaches.net

  • Scattered Spider Hijacks VMware ESXi to Deploy Ransomware on Critical U.S. Infrastructure
  • Hacker group “Silent Crow” claims responsibility for cyberattack on Russia’s Aeroflot
  • AIIMS ORBO Portal Vulnerability Exposing Sensitive Organ Donor Data Discovered by Researcher
  • Two Data Breaches in Three Years: McKenzie Health
  • Scattered Spider is running a VMware ESXi hacking spree
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy