Geisinger builds IT controls into its systems to enforce hospital privacy policies. Non-Geisinger affiliated doctors must get a patient’s written OK before accessing test results from EMR. Online medical records can be modified to limit access to parents and guardians depending on the age of the patient, or legal issues such as parental custody disputes that leave one parent as the health-care proxy. The hospital also plans a marketing campaign to raise awareness about the new online medical information services and educate non-affiliated doctors.”]
Source: https://www.csoonline.com/article/2117753/hipaa–privacy-defenses.html