Framework library
Framework module · hipaa-breach-notification

HIPAA Breach Notification Rule

What a covered entity or business associate must tell individuals, the media, and HHS after a breach of unsecured protected health information, and how fast.

45 CFR §§ 164.400–414 · HHS Office for Civil Rights

Standing today
Catalog only

01Standing

Catalog only

A directory entry — authority, version ledger, verification — not a workspace you can open.

HIPAA Breach Notification Rule is tracked in the registry — authority, version ledger, verification — and nothing is modelled for it yet. Import its catalog to begin.

Named and tracked only; no control model on disk.

02Registry record

checked 2026-08-06
Registry status
Planned · namedWe name the regime and track its authority. Nothing is modelled yet.
Control units
Not on record — no catalog ingested and no authority-published count cited.
Control families
Individual notice · Media notice · Secretary notice · Business associate notice
Applies to
healthcare · US
Verification
Secondary — corroborated across independent sources; the authority blocks automated fetch or does not state it plainly. checked 2026-08-06

03Version ledger

1 edition
45 CFR §§ 164.400–414Current editiondate not published
HIPAA Breach Notification Rule — framework module | ControlFrame