US 11,901,050 B2
Methods, systems, and media for determining application compliance with the health insurance portability and accountability act
Michelle Rae Longmire, Palo Alto, CA (US); Timothy Robert Smith, Palo Alto, CA (US); and James Marcel Sas, Palo Alto, CA (US)
Assigned to Medable Inc., Palo Alto, CA (US)
Filed by Medable Inc., Palo Alto, CA (US)
Filed on Jun. 21, 2022, as Appl. No. 17/845,212.
Application 17/845,212 is a continuation of application No. 15/132,146, filed on Apr. 18, 2016, granted, now 11,450,415.
Claims priority of provisional application 62/149,486, filed on Apr. 17, 2015.
Prior Publication US 2022/0328148 A1, Oct. 13, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. G16H 10/60 (2018.01); G06F 11/14 (2006.01); G06F 21/62 (2013.01); G06F 21/44 (2013.01)
CPC G16H 10/60 (2018.01) [G06F 11/1451 (2013.01); G06F 21/44 (2013.01); G06F 21/6245 (2013.01); G06F 2201/80 (2013.01)] 21 Claims
OG exemplary drawing
 
1. A method for determining whether a software application, executing on an electronic device, is compliant with the Health InsurancePortability and Accountability Act (HIPAA), comprising:
receiving, over a computer network and at a computing system including a processor, a request to determine whether the software application is compliant with HIPPA, wherein the software application has access to a data object that includes at least protected health Information (PHI) or personally identifiable information (PII);
determining, by the processor, if the software application implements for the data object a threshold number of one or more safeguard techniques for each of a plurality of different types of safeguard techniques;
determining that the software application is compliant with HIPAA in response to determining that the software application implements for the data object the threshold number of the one or more safeguard techniques for each of the plurality of different types of safeguard techniques;
determining that the software application is not compliant with HIPAA in response to determining that the software application does not implement for the data object the threshold number of the one or more safeguard techniques for each of the plurality of different types of safeguard technique; and
outputting, on a user interface, an indication indicating that the software application is compliant with HIPAA or not compliant with HIPAA.