|Protect your privacy: always be aware of callers asking for personal
The Weed Army Patient Advocate regularly reminds patients that criminal call centers try to get personal information from Tricare beneficiaries and are endeavor to send samples of drug products to them. Tricare beneficiaries should remember that Tricare will NEVER call and ask for personal information. If a beneficiary has any doubt they should under no circumstances give any information over the phone. Beneficiaries who receive such calls are encouraged to report them immediately to Express Scripts at
Tel.1-866-759-6139 or at Tricare email@example.com.
Military Health System notice of privacy practices
|Effective Oct. 1, 2013.
This notice describes how medical information about you may be used and disclosed and how you can get access to this information. Please review it carefully.
If you have any questions about this notice, please contact your local Military Treatment Facility (MTF) Privacy Officer or, if necessary, the Tricare Management Activity (TMA) Privacy Officer at www.tricare.osd.mil.
This notice of privacy practices is required by the Health Insurance Portability and Accountability Act (HIPAA) privacy rule. It describes how medical information about you may be used and disclosed and how you can get access to this information. If you have any questions about this notice, please contact the HIPAA Privacy Officer at your military treatment facility (MTF) or, if necessary, the Defense Health Agency (DHA) Privacy and Civil Liberties Office (DHA Privacy Office). See “Contact Information” at the bottom of this notice.
MHS practices regarding Protected Health Information (PHI)
This notice describes MHS practices regarding your PHI. The terms "we" and "our" in this notice refer to the MHS. The MHS includes the following:
MTFs including Coast Guard treatment facilities
All MHS/Tricare health plans
Tricare Regional Offices
Tricare managed care support contractors and certain other organizations with access to your PHI under agreements with the MHS. However, private sector providers in contractor networks must issue their own Notices of Privacy Practices.
MHS and Coast Guard headquarters functions, such as activities of DHA and the Military Departments’ Surgeons General
Our duties to you regarding your PHI
The HIPAA Privacy Rule requires the MHS to:
1. Ensure that your PHI is properly safeguarded.
2. Notify you if we determine that your PHI was inappropriately used or disclosed.
3. Provide you this notice of our legal duties and privacy practices for the use and disclosure of your PHI.
4. Follow the terms of the notice currently in effect.
Our right to revise this notice. We may change this notice and our privacy practices at any time. Any revised notice will apply to the PHI we already have about you at the time of the change and any PHI we create or receive after the change takes effect. We will advise you of important changes and post the revision on our website.
How to obtain a copy of this notice. This notice is available in paper copy at your MTF and is also available on our website. You can ask for a paper copy at your next appointment, or call and request that we mail a copy to you, even if you have previously agreed to receive this notice electronically.
How we may use or disclose your PHI without your authorization
Treatment. To provide, coordinate, or manage your health care. For example, we may disclose your PHI to another MTF, physician, or health care provider, such as a specialist, pharmacist, or laboratory, who, at the request of your provider, becomes involved with your health care.
Payment. To obtain payment for your health care services. This may include certain activities needed to approve or pay for your health care services, such as using or disclosing your PHI to obtain approval for a hospital stay.
Health care organizations. To support the daily activities related to health care. These activities include, but are not limited to, quality assessment activities, patient safety, investigations, oversight of staff performance, practitioner training, licensing, communications about a product or service, and conducting or arranging for other health care related activities. We do not use or disclose any genetic information for underwriting purposes.
Business associates. To certain companies (“business associates”) that provide various services to the MHS (for example, billing, transcription, software maintenance, legal services, and managed care support). The law requires that business associates protect your PHI and comply with the same HIPAA Privacy standards that we do.
Armed Forces PHI for military activity and national security. To certain officials and for special government functions including:
Military command authorities, where needed, to ensure the proper execution of the military mission, including evaluation of fitness for duty.
The Department of Veterans Affairs (VA) for determinations of your eligibility for benefits.
Foreign military authorities with respect to their armed services members.
Authorized federal officials for national security or intelligence activities, or protective services for the President and others.
Public health. To public health authorities and parties regulated by them, as permitted by law. Examples of why they may need your PHI include prevention or control of disease, injury, or disability.
Reporting victims of abuse, neglect, or domestic violence. To government authorities that have authority to receive such information, including a social service or protective service agency.
Communicable diseases. To a person who might be at risk of contracting or spreading a communicable disease or condition.
Health oversight. To a health oversight agency legally authorized for audits, investigations, and inspections. Such activities may include the health care system, government benefit programs, civil rights laws, and other government regulatory programs.
Worker's compensation. To workers’ compensation programs.
Required by law. To government and other entities as required by federal or state law (including DoD and Military Department regulations). For example, we may be required to disclose your PHI to the Department of Health and Human Services (HHS) investigating HIPAA violations or to a DoD Inspector General conducting other investigations.
Legal proceedings. To parties and entities in proceedings of courts and administrative agencies, including in response to a court order or subpoena.
Inmates. To a correctional facility with respect to inmates.
Coroners, funeral directors, and organ donations. To coroners, medical examiners, or funeral directors, and to determine the cause of death or for the performance of other duties. PHI also may be used and disclosed for cadaver organs, eyes, or tissue donations.
Law enforcement. To law enforcement authorities. For example, to investigate a crime involving the MHS or its patients.
Research. To researchers. The MHS reviews research proposals and protocols to ensure the privacy of your PHI requested for such research activities.
Avert threats. To prevent or lessen a serious and imminent threat to the health or safety of a person or the public.
Disclosures by the health plan. To parties that need your PHI for health plan purposes such as enrollment, eligibility verification, coordination of coverage, or other benefit programs.
Minors and other represented beneficiaries. To parents, guardians, and other personal representatives, generally consistent with the law of the state where treatment is provided.
How we may use or disclose your PHI unless you object
The following are examples of permitted uses and disclosures of your protected health information. These examples are not exhaustive.
MTF directories. To individuals who ask for you by name at an MTF (disclosures are limited to your name, where you are receiving care, and your general condition). We may also tell members of the clergy your religious affiliation.
Individuals involved in your health care. To the following persons or entities:
A member of your family, or any other person you identify who is involved, before or after your death, in your health care or payment for care, unless we are aware of a deceased individual’s contrary preference.
A person who is responsible for your care who needs to know about your location, general condition, or death.
An authorized entity to assist in disaster relief efforts.
Uses and disclosures requiring your authorization
Any use or disclosure of your PHI not described in this notice requires your written authorization. Some uses and disclosures, even if included in this notice, would not be permitted without your written authorization. These include the following three activities in which the MHS does not engage:
Sharing your psychotherapy notes with a third party who is not a part of your care.
Sending information to encourage you to buy a product if we are paid to send that information or make that communication.
Selling you PHI
If you authorize us to share your PHI, you can revoke your authorization at any time by contacting your MTF HIPAA Privacy Officer, but your revocation will only apply to information not already disclosed.
Your rights regarding your health information
You may exercise the following rights through a written request to your MTF HIPAA Privacy Officer. If your request does not relate to an MTF, please go to the "Contact Us" page of the Tricare website, which will provide additional information on submitting your written request. Depending on your request, you may also have rights under the Privacy Act of 1974.
Right to inspect and copy. As allowed by law, you may inspect and request a copy of your medical or billing records (including an electronic copy, if we maintain the records electronically). You have the right to have the information sent directly to a party you designate, such as your physician. In limited situations, we may deny your request or part of it, but if we do, we will tell you why in writing and explain your right to review, if any.
Right to request restrictions. You may ask us not to share any part of your PHI for treatment, payment, or health care operations. You may also request that we limit the information we share about you to someone who is involved in your care or the payment of your care. In your request, you must tell us what information you want restricted, and to whom you want the restriction to apply. Neither the MTF nor DHA is required to agree to your request. We will not deny a request to restrict disclosure of your PHI to a health plan (including a Tricare health plan), where the PHI relates to the care which you paid for in full out of pocket. We will not use or disclose your PHI in violation of a restriction to which we agreed, unless your PHI is needed for emergency treatment. We permit you, the MTF, or DHA to end a previously agreed-upon restriction at any time by providing written notice.
Right to request confidential communications. You may request that we communicate with you in a certain way or at a certain location (e.g., only at home or only by mail). We will accommodate reasonable requests.
Right to request amendment. You may request an amendment to your PHI if you believe there is an error. You must tell us what you would like corrected or added to your information and why. If we approve your request, we will make the correction or addition to your PHI. If we deny your request, we will tell you why and explain your right to file a written statement of disagreement.
Right to an accounting of disclosures. You may request that we provide you with an accounting of when your PHI was disclosed outside the MHS, but an accounting will not include certain disclosures (e.g. for treatment purposes). You are entitled to one disclosure accounting in a 12-month period at no charge. We may charge a fee for additional requested accountings. Your request must state the time period for which you want to receive the accounting, which may be up to six years before the date of your request.
If you believe that an MTF or other MHS component has violated the HIPAA Privacy Rule, you may file a written complaint with your MTF HIPAA Privacy Officer, the DHA Privacy and Civil Liberties Office, or HHS. We will not take any action against you for filing a complaint.
You may contact Moncrief Army Community Hospital's HIPAA Privacy Officer at 803-751-7484 or the TMA Privacy Officer for further information about the complaint process, or for further explanation of this document. The TMA Privacy Officer may be contacted at Tricare Management Activity, Information Management, Technology and Reengineering Directorate, HIPAA Office, Five Skyline Place, Suite 810, 5111 Leesburg Pike, Falls Church, VA 22041-3206, by phone at 1-888-DOD-HIPA (1-888-363-4472 Toll Free from the continental United States)/TTY 877-535-6778. You may also email questions to firstname.lastname@example.org.
For additional information regarding your privacy rights visit the TRICARE Web site at http://www.tricare.osd.mil/hipaa/.
|Notice: this is a U.S. Government website.
1. The Weed Army Community Hospital (WACH) provides this website as a public service.
2. Information presented on WACH's website is considered public information and may be distributed or copied unless otherwise specified. Use of appropriate byline/photo/image credits is requested.
3. For site management, information is collected for statistical purposes. This U.S. Government computer system uses software programs to create summary statistics, which are used for such purposes as assessing what information is of most and least interest, determining technical design specifications, and identifying system performance or problem areas.
4. For site security purposes and to ensure that this service remains available to all users, software programs are employed to monitor network traffic to identify unauthorized attempts to upload or change information, or otherwise cause damage.
5. Except for authorized law enforcement investigations and national security purposes, no other attempts are made to identify individual users or their usage habits beyond DoD websites. Raw data logs are used for no other purposes and are scheduled for regular destruction in accordance with National Archives and Records Administration Guidelines. All data collection activities are in strict accordance with DoD Directive 5240.01.
6. Web measurement and customization technologies (WMCT) may be used on this site to remember your online interactions, to conduct measurement and analysis of usage, or to customize your experience. The Department of Defense does not use the information associated with WMCT to track individual user activity on the Internet outside of Defense Department websites, nor does it share the data obtained through such technologies, without your explicit consent, with other departments or agencies. The Department of Defense does not keep a database of information obtained from the use of WMCT. General instructions for how you may opt out of some of the most commonly used WMCT is available at http://www.usa.gov/optout_instructions.shtml
7. Unauthorized attempts to upload information or change information on this site are strictly prohibited and may be punishable under the Computer Fraud and Abuse Act of 1987 and the National Information Infrastructure Protection Act (18 U.S.C. § 1030).
8. If you have any questions or comments about your privacy or information presented here, please contact us.