Resources on privacy and security
Some members have the right to tell Aetna to release some of their health data to third-party apps.
Here are some educational materials. You can use them to help decide who to share your health data with.
Learn about the payer to payer data exchange
Protect the privacy and security of your health data
Take care when choosing which apps you share your health data with. Health data can be very sensitive. We don’t control how third-party apps use or share your health data. We don’t review third-party apps or their privacy and security standards for your health data.
We recommend choosing apps with strong privacy and security standards. Always read apps’ terms of use first. They should have an easy-to-read and find privacy policy. This should tell you how they plan to use your data. Some apps may share your health data with other third parties. If they don’t have a privacy policy, think again about using the app.
Things to think about when choosing a third-party app to receive your health data
You want to make sure an app’s privacy policy answers these questions.
What is HIPAA?
Who must follow HIPAA?
“Covered entities” must follow HIPAA rules. This can include:
“Business associates” who provide certain services for covered entities must follow parts of the HIPAA rules. This can include:
Many entities that have your health info don’t need to follow HIPAA rules. These may include:
You can find more info from HHS about patient rights under HIPAA and who must follow HIPAA
Do third-party apps have to follow HIPAA rules?
HIPAA doesn’t cover most third-party apps. Instead, the apps fall under the authority of the Federal Trade Commission (FTC) and the protections of the FTC Act. The act protects against deceptive acts. For example, if an app shares personal data without your permission, despite having a privacy policy that says it will not do so.
You can read more from the FTC about mobile app privacy and security
How do I file a HIPAA privacy complaint?
If you think your HIPAA privacy rights were violated, you have options:
HIPAA Member Rights Team
Aetna Inc.
P.O. Box 14079
Lexington, KY 40512-4079
File a complaint if you think an app has misused your data.
You are now leaving our Aetna® Dual Eligible Special Needs (HMO D-SNP) website. The information you will be accessing is provided by another organization or vendor. If you do not intend to leave our site, please click the "X" in the upper right-hand corner.