CCPA-1798.148-01
Prohibition
1798.148
Prohibition on reidentifying deidentified information except for specified purposes
Description
Must not reidentify or attempt to reidentify information that has met the deidentification requirements of Section 1798.146(a)(4), except for the five specified purposes: healthcare operations by...
Full Analysis & Evidence Requirements
Sign in to view the full obligation text, AI-generated applicability analysis, evidence checklists, and compliance mapping.
Sign In to ViewRelated Obligations
CCPA-1798.148-02
Requirement
Compliance with federal and state privacy laws for reidentified information
CCPA-1798.148-03
Transparency
Inclusion of deidentified patient information disclosure in contracts
CCPA-1798.148-04
Transparency
Inclusion of reidentification prohibition clause in contracts
CCPA-1798.148-05
Requirement
Inclusion of third-party disclosure restrictions in contracts
CCPA-1798.148-06
Requirement
Contract compliance for testing/validation of deidentification
Map this obligation to your AI systems
ReguLume automatically maps regulatory obligations to your system inventory, identifies compliance gaps, and generates remediation plans.
Get Started