The Health Insurance Portability and Accountability Act of 1996 may be the most well-known privacy law in the United States, but it is also one of the most misunderstood.

Many people don’t even get the acronym correct. It is HIPAA, with one P and two A’s.

“More often than not when someone mentions a situation where they think the law protects their privacy, they’re wrong,” reads a new Consumer Reports article, which lays out situations where HIPAA doesn’t apply,

