Patient Access Information for Developers & EHR Vendors

API Learning Module

Learn from this interactive training module how application programming interfaces (APIs) work and how they can support patient access to health information.


When developing electronic health records (EHRs), developers need to take into account important privacy and security obligations of their users, which include ensuring that patients can easily get, check and use their information. Search the resources below for the latest guidance on privacy, interoperability, and certification, or join a forum to discuss emerging topics of interest within the community.

Patient Access Resources for Developers & EHR Vendors

Technical Guidance

Draft U.S. Core Data for Interoperability

A common set of data classes are required for interoperable exchange of health information. Learn more about ONC’s Draft U.S. Core Data for Interoperability (USCDI).

Technical Implementation Guides for Health Apps and APIs

This guide explains the key considerations for implementing and managing APIs in health care with privacy and security of health information in mind.

Access Right, Health Apps, and API FAQs

Find answers to frequently asked questions about Health IT and HIPAA from the HHS Office for Civil Rights.

Mobile Health Apps Interactive Tool

Developing a mobile health app? Use this interactive tool to find out which federal laws you need to follow, including the health insurance portability and accountability act (HIPAA).

Policy Guidance

2015 Edition Certification Companion Guide

This Certification Companion Guide (CCG) is an informative document designed to assist with health IT product development.

Trusted Exchange Framework and Common Agreement

The Draft Trusted Exchange Framework outlines a common set of principles and minimum terms and conditions for trusted exchange to bridge the gap between information systems.

Health App Use Scenarios and HIPAA

Have questions about health app development and HIPAA? Find answers, guidance, and links to other resources from OCR here.

Privacy & Security

Guide to Privacy and Security

Everyone plays a role in protecting the privacy and security of electronic health information. Learn from this resource what role you play and how you can succeed in your privacy and security responsibilities.