HHS and CMS have confirmed the requirement that all Emails and Text Messages containing Protected Health Information (PHI) must be encrypted. There is only one exception. Patients have the absolute right to communicate with Covered Entities by unencrypted email and text message – if the patients have been informed there is some level of risk and prefer using unencrypted electronic transmissions. The key takeaway is how Covered Entities can protect themselves fully from HIPAA violations and comply with the patient’s right to receive unencrypted Emails and Texts containing PHI. Just a simple 3-Step Safeguard is all that is needed. Areas Covered Overview – Key Takeaways When You Must Encrypt Emails and Text Messages with PHI – Exception Why is this so important? Temptations HIPAA Rules for Email & Text Messaging Key Definitions 3-Step Safeguard – Patient Emails & Text Messages TCPA and the Effect of April 1, 2021, Supreme Court Decision When and Why You Must Encrypt Tips for Enterprise-wide Compliance Register, https://conferencepanel.com/conference/hhs-mandatory-email-and-text-message-encryption-rules-with-only-one-exception-for-informed-patients