Skip to main content
Best Practices

Picture This: Always Use a HIPAA-Compliant Camera for Patient Photos

How compliant are your patient photo practices? If you use photos in patient care and those photos have any identifiable information, using a HIPAA-compliant camera is a must. The camera itself need not be bulky or inconvenient. It can be the same one on your smartphone. The difference is these photos are taken within a secure texting app.

HIPAA-compliant camera

How compliant are your patient photo practices? If you use photos in patient care and those photos have any identifiable information, using a HIPAA-compliant camera is a must. The camera itself need not be bulky or inconvenient. It can be the same one on your smartphone. The difference is these photos are taken within a secure texting app. They are never stored or saved on the phone’s photo gallery or cloud. With an app, a standard smartphone camera becomes a HIPAA camera.Unfortunately, many clinicians and hospitals have not always been compliant. This has led to fines, lawsuits, and terminations. Not only did these employees not use a HIPAA camera, many also took or shared pictures that break all kinds of privacy rules. From ranting social media posts to pranks, the misuse of patient photos have real consequences. The following examples are what not to do.

Surgery Patient Sues Over Picture Prank

An anesthesiologist at a California hospital took photos of an unconscious patient after he had decorated her face with a mustache of sticky labels. He then shared the photos with colleagues and online. The patient didn’t find it so funny, suing the doctor and the hospital. A state investigation followed, ending with disciplinary action against the physician.

Physician Roasts Patient on Facebook

A former Northwestern University student was admitted to Northwestern Memorial Hospital for extreme intoxication. Apparently, this must have been quite a scene. A physician took photos of her and posted them to social media with commentary on the patient’s behavior. This triggered a lawsuit. Bottom line, posting any  photos on social media related to patients should not be a practice of healthcare providers.

Photos in Surgery: Chief Resident Violates Privacy of Patient

A clinic in Rochester, Minn. was the subject a lawsuit over the acts of its chief resident of general surgery. He used his smartphone camera to take a picture of a patient's penis during surgery. Whether or not this was for medical reasons or just curiosity, it obviously was not a compliant act.

Hospital Employee is Target of Prank

A former employee of a Pennsylvania hospital sued the hospital, alleging that nude photos were taken of her during a surgery. The surgery team them showed them to the employee upon her return to work. This, in their words, was part of a practical joke. Although she admitted to attaching fake intestines to her body, she did not authorize the photos. The result of this prank gone wrong was the termination of the clinician who took the photos and the demotion of the surgeon.

Shark Attack Victim Says Photos of Wounds Unauthorized

A shark attacked becomes the basis for a lawsuit in this story. A tiger shark attacked a surfer in Oahu, Hawaii. Upon his arrival at the emergency room, photos were taken of him and his wounds. The victim later sued, claiming breach in privacy. While photos would have been necessary for this patient’s care, they were neither agreed to or taken with a HIPAA-compliant camera. The lawsuit alleged data privacy and HIPAA breaches.

Get a HIPAA-Compliant Camera with Our Secure Texting App

Qliq, from QliqSoFT, is one of the only healthcare secure texting platforms with HIPAA-compliant camera technology. Any photo taken within the app won’t save on a smartphone or cloud. It’s also never stored on our servers. Our Cloud Pass-Thru proprietary architecture allows all data to pass from one user to another. Or, load it directly to the EMR, and there are no limitations. Qliq is EMR-agnostic. Never worry about the security of your data, like you might with other third-party providers. Want to learn more about the benefits of the HIPAA camera? Learn more about our solution.

Frequently Asked Questions

Find answers to common questions about this topic.

Healthcare providers can face lawsuits, state investigations, job termination, and disciplinary action from licensing boards. Even photos taken during legitimate medical procedures can result in legal action if not captured using HIPAA-compliant methods or proper authorization.

Yes, patient authorization is typically required for clinical photography, even when using compliant capture methods. HIPAA-compliant cameras address secure storage and sharing, but don't eliminate the need for proper patient consent protocols.

No, simply deleting photos from a personal phone doesn't ensure HIPAA compliance. Photos may still sync to cloud backups, remain in deleted folders, or leave digital traces that create privacy risks.

Both require HIPAA-compliant capture methods and proper authorization, but educational use often requires additional consent and de-identification protocols. Taking photos for curiosity or informal education without proper safeguards can still result in privacy violations.

HIPAA-compliant camera apps can directly upload photos to EMR systems without storing images on the device or personal cloud services. This creates a secure chain of custody from capture to documentation within the patient's medical record.

Ben Henson

Written by

Ben Henson

Healthcare IT Specialist

Healthcare IT specialist with expertise in HIPAA compliance and secure messaging.

View all posts

Related Articles

A woman holding her child while looking a notification on her phone.
Best Practices

A Patient Engagement Chatbot that Actually Engages Patients

Chatbots will take their place in healthcare during 2020 as a very scalable and valuable clinical tool for proactively exchanging care-related information between patients and their care teams, as well as between care team members themselves. Chatbots aren’t new. In fact, the first chatbot, named Eliza, was created by MIT professor Joseph Weizenbaum in 1966. Eliza, however, lacked two essential elements that, today, enable the use of chatbots as a tool that actually gets patients involved in their own personal care. These elements are smart devices that offer an SMS texting feature and artificial intelligence (AI).

Ben HensonBen Henson
6 min read
doctor texting results of brain scans using hipaa compliant secure texting app for healthcare
Best Practices

8 Reasons Why Physicians are Adopting HIPAA-Compliant Secure Texting

Healthcare, with all its technological advances, finds itself stuck in the dark ages, with pagers, phone calls and standard sms texting still having a heavy hold on physicians across the country. And even though pagers were once considered a badge of honor among newly minted doctors, they are now viewed with the same disdain as CD players by today’s tech savvy healthcare providers. This is because there is a better way for doctors to communicate.

Ben HensonBen Henson
8 min read
Hispanic  Health Coalition of Georgia Partners with QliqSOFT to Modernize Digital Patient Communication for Community Members   - QliqSOFT Blog
Best Practices

Hispanic Health Coalition of Georgia Partners with QliqSOFT to Modernize Digital Patient Communication for Community Members

The Hispanic Health Coalition of Georgia (HHCGA) has selected QliqSOFT as its strategic automated patient communications partner. QliqSOFT empowers patients to communicate directly and confidentially with healthcare providers through the use of multilingual, interactive chatbots and virtual visits to find the right help, navigating available healthcare services, and resources including patient education.

Ben HensonBen Henson
2 min read
6m left