ASHA-IIE-CONFIDENTIALITY — ASHA Issues in Ethics: Confidentiality (2024)
What does ASHA-IIE-CONFIDENTIALITY say?
Professional persons in health care delivery fields have legal and ethical responsibilities to safeguard the confidentiality of information regarding clients/patients. Key guidance: (1) HIPAA privacy and security rules apply in health care facilities; FERPA applies in schools; both may apply simultaneously. (2) Confidentiality in research requires protecting the privacy of participants through procedures approved by an Institutional Review Board. (3) Client/patient information may only be released with proper authorization (from the individual or legally authorized representative) or as required by law. (4) Student privacy must be maintained under FERPA; educational records may not be disclosed without proper consent. (5) Confidentiality extends to peers and colleagues — practitioners should not share information about colleagues' professional conduct except through proper channels. (6) Electronic records require appropriate safeguards including encryption, secure storage, and access controls. (7) When using case studies for teaching or publication, all identifying information must be removed or consent obtained. Relevant Code sections: Principle I Rules O, P (protecting confidentiality and security of records; disclosure only when legally authorized).
Official source: read the full text in the ASHA Code of Ethics (2023) (official document).