We've had a HIPAA breach case where a provider was bouncing back and forth between two charts while working in our express care department. The clinical visit summary (CCDA) was already generated for Patient A. He signed off on Patient A's chart and went to Patient B's chart. Unbeknownst to him, the system generated a second CVS for Patient A and placed it on Patient B's office note when he signed Patient A's OV. Patient B notified us they had received a CVS for another patient in their patient portal.
We opened a case with our VAR and subsequently they opened a case with GE over 2 weeks ago. Until GE resolves this issue, our providers have decided to not create any more CVS's to prevent any further breaches (causing concern for meaningful use as we are now in our reporting period).
I wish I had a query to find out if there is more than one case like this in our system.
Anyone else with this bug?
We are on CPS 12 Sp3.
Thanks,
Jake Hinkelman
Valley Medical Center
Jake, can you please e-mail me about this issue. I have a few questions, I think we have had something similar happen. Thanks!
Steph B
For the past 1+ weeks our CVS was printing blank. We went from SP3 to SP5 which caused huge issues. Today we got it to print again and this very thing happened. I printed a CVS on one patient, went to another patient and clicked print and got the same CVS as the first patient.
mboulerice,
It sounds like GE is close to releasing a fix for our issue. Please call into your GE support to ensure you are on the SPR if it applies to you.
Thanks,
Jake
We are on CPS 12.0.6.1471 and we are in the same boat. We completely turned off the new CVS. I was updated on the fact this was a known issue by GE. Luckily we had no HIPAA breaches. Those I did find in error were seen as multiple CVS documents attached to a single document. These patients were easily visible when running a query, but what do you do when the CVS is attached to a document on the wrong patient where a CVS did not live before? GE is supposedly working a temporary fix.
Checkout SPR 60572 on the GE website.
https://engage.gehealthcare.com/docs/DOC-103100
Hi David,
I think I missed your response in October, did GE notify you of the potential for breach? I received notification last week of the CVS fix patch for SP6 (and the fix is included in SP7 as well), but I'm still surprised GE kept this in the dark without providing at least a script for clients to use to determine if it was affecting their patient records.
Thanks for the update,
Jake