HIPAA Digest | Catapult Business Innovations – October 7, 2025

Using Patient Photos in Marketing? OCR Settlement Highlights HIPAA Compliance Requirements

This article explains how OCR settlements shape HIPAA compliance when using patient photos in marketing, underscoring the need for explicit consent and strong privacy safeguards to prevent PHI exposure in campaigns.

Read full article

Beyond the Clinical Setting: OCR’s Settlement with Cadia Further Demonstrates OCR’s Focus on HIPAA Compliance in the Digital World

Cadia settlement coverage highlights OCR’s ongoing emphasis on HIPAA compliance across digital platforms, including marketing technology and AI tools, signaling that healthcare marketers and vendors must implement privacy-by-design and robust data controls in digital campaigns.

Read full article

Reid Health Settles Meta Pixel Class Action Data Breach Lawsuit

This article covers a real-world data breach involving a health system and Meta’s Pixel tracking, illustrating the privacy risks of third‑party analytics on PHI and the importance of vendor risk management and HIPAA-aligned data handling for marketing tech.

Read full article

Tebra Launches Industry-First AI Review Replies and AI Review Insights as Part of EHR+ Patient Experience Package

AI-driven patient experience features can boost marketing and engagement, but this article notes the need to ensure AI tools handle PHI securely and remain HIPAA-compliant when integrated with EHRs and patient data.

Read full article

PHI at APHA 2025

This Public Health Institute update from APHA 2025 highlights ongoing privacy and PHI considerations in health marketing and policy, offering business leaders insight into aligning HIPAA-conscious data practices with public-health initiatives and AI strategies.

Read full article