HIPAA Compliance & Health Information Protection
Note: While HIPAA is a U.S. regulation, MyBloodDonorPH follows similar principles to protect your health information in accordance with the Philippine Data Privacy Act of 2012 and international best practices.
Our Commitment to Health Information Privacy
We understand that blood type and health-related information is sensitive. We are committed to protecting this information with the highest standards of security and privacy.
Protected Health Information (PHI)
The following information is treated as protected health information:
- Blood type and Rh factor
- Donation history
- Health eligibility status
- Any medical conditions disclosed
Security Measures
- End-to-end encryption for data transmission
- Encrypted database storage
- Access controls and authentication
- Regular security audits
- Employee training on data protection
- Incident response procedures
Minimum Necessary Standard
We follow the principle of minimum necessary disclosure. When sharing donor information with requesters, we only share what is necessary for the blood donation purpose. Full medical history is never shared.
Audit Trail
All access to protected health information is logged and monitored. This includes who accessed the information, when, and for what purpose. These logs are retained for compliance and security purposes.
Your Rights
- Right to access your health information
- Right to request corrections
- Right to know who has accessed your information
- Right to request restrictions on use
- Right to file a complaint
Contact Our Privacy Officer
For questions or concerns about health information privacy, contact our Privacy Officer at privacy@myblooddonorph.com.