Uploaded image for project: 'FHIR Specification Feedback'
  1. FHIR Specification Feedback
  2. FHIR-40367

add HIPAA consideration for unsolicited service determination

    XMLWordPrintableJSON

Details

    • Icon: Change Request Change Request
    • Resolution: Persuasive with Modification
    • Icon: Medium Medium

    Description

      Bob recently heard from CMS that they expect a CRD/DTR service determination / pre-emptive prior auth to be built with a 278 response for HIPAA compliance (opposite of what we were hoping in https://chat.fhir.org/#narrow/stream/179283-Da-Vinci/topic/pre-emptive.20prior.20auth.20and.20hipaa ). 

       

      We should update the guidance under unsolicited determination to mention something like "Similar to PAS, to use an unsolicited determination there is an expectation that either it has been translated from a 278 response or is being done under a HIPAA exception ( https://build.fhir.org/ig/HL7/davinci-pas/specification.html#processing-prior-authorization-submissions-under-the-cms-exception )"

       

      CRD had a clear place to add this, for DTR I'm not as sure where it should go. The SDC Adaptive forms page has a section on writing a ClaimResponse.

      Attachments

        Activity

          People

            Unassigned Unassigned
            kjohnsen Kyle Johnsen
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: