News
Aesto Health AWS Breach Hits HHS Portal at 9.54 Million Patients Across 30 Provider Clients, Including Everside Health · Data BreachTheGentlemen Ransomware Group Threatens Nutex Health's 27-Hospital Network; Class Action Filed Days After SEC Disclosure · Data BreachOCR Settles with California Eye Care Provider Azul Vision for Failure to Provide Timely Patient Record Access — 55th Right of Access Enforcement Action · OCR EnforcementShinyHunters Claims Leak of 7.1 Million Baxter International Salesforce Records Including Patient PII · Data BreachCareCloud EHR Vendor Breach Exposes Medical and Financial Data of 345,000 Patients · Data BreachOptalis Management Solutions and Other HIPAA-Regulated Entities Disclose Patient Data Breaches Affecting Thousands · Data BreachFive Small Healthcare Organizations Disclose Patient Data Breaches: Family Medical Associates of Raleigh, Arkansas Oral & Maxillofacial Surgeons, Alpine Agency of the Midlands, Princeton Family Eye Care, and Others · Data BreachAesto Health AWS Breach Hits HHS Portal at 9.54 Million Patients Across 30 Provider Clients, Including Everside Health · Data BreachTheGentlemen Ransomware Group Threatens Nutex Health's 27-Hospital Network; Class Action Filed Days After SEC Disclosure · Data BreachOCR Settles with California Eye Care Provider Azul Vision for Failure to Provide Timely Patient Record Access — 55th Right of Access Enforcement Action · OCR EnforcementShinyHunters Claims Leak of 7.1 Million Baxter International Salesforce Records Including Patient PII · Data BreachCareCloud EHR Vendor Breach Exposes Medical and Financial Data of 345,000 Patients · Data BreachOptalis Management Solutions and Other HIPAA-Regulated Entities Disclose Patient Data Breaches Affecting Thousands · Data BreachFive Small Healthcare Organizations Disclose Patient Data Breaches: Family Medical Associates of Raleigh, Arkansas Oral & Maxillofacial Surgeons, Alpine Agency of the Midlands, Princeton Family Eye Care, and Others · Data Breach
Beginnerprovider

HIPAA and Patient Care: Talking to Other Providers

Coordinating care is allowed; oversharing in public is not. Here's the balance.

TL;DR

HIPAA supports treatment communications among providers who are actively involved in a patient's care. Still use private settings and share only what is needed.

Updated 2026-04-21

Treatment is one of the main reasons information exists in healthcare. HIPAA recognizes that doctors, nurses, therapists, and pharmacists must be able to coordinate.

What "for treatment" usually covers

Consultations, referrals, handoffs at shift change, and care planning with professionals who are actually treating the same patient.

What it does not cover

Gossip, curiosity, or chatting about interesting cases with peers who are not in the care team. Social settings and public elevators are still wrong places for identifiable details.

Practical tips

  • Use secure messaging inside your EHR when available.
  • Confirm you are talking to the right clinician or facility before sharing.
  • When family members ask questions, fall back on authorization rules, not treatment exceptions.

Not legal advice. Educational overview only; consult qualified counsel for your situation.