8 ms·
> and TONS of platforms wanted to warehouse this data. My coworker and I were there looking for exactly those sorts of things, and it was great to see so much.
by DoofusOfDeath 6y ago
> and TONS of platforms wanted to warehouse this data. My coworker and I were there looking for exactly those sorts of things, and it was great to see so much.
As I read your comment, I had a growing expectation that you were about to express horror at the mass gathering and warehousing of individuals' health data. I was very surprised when you expressed such excitement at the prospect.
- blhack 6y agoYour doctor already captures this data.
- sm4rk0 6y agoIn real time and willing and able to sell it to whomever bids more?
- blhack 6y agoWell yes in some cases it is in "real time", but do you know of doctors offices caught selling health data? That seems wildly unethical, and also very illegal. I'd imagine anybody caught doing that would be in jail.
- sm4rk0 6y agoMy point was that your data is safer with a doctor's office then with a "platform": > And while you might assume that this information is legally protected the same way your hospital and medical records are, that’s not necessarily the case. https://www.consumerreports.org/health-privacy/are-health-apps-putting-your-privacy-at-risk/ https://www.consumerreports.org/health-privacy/are-health-ap...
- blhack 6y agoCan you be specific about what you're trying to get at here? I don't understand why you think there is a difference between taking a health reading at your doctors office and having it included in your patient chart, or taking a reading at your house and having that included in your patient chart. I'm wondering if I'm missing something that is just being unsaid.
- everly 6y agoI think they are just saying the data is more likely to be secure if it is recorded at your doctor's office, which seems reasonable to me. Let's say it is a blood pressure reading taken by your Fitbit and uploaded to Google's servers. That data is not subject to HIPAA regulations. When your doctor takes your blood pressure and records it in your chart, it is subject to those regulations (as you say, it would be wildly unethical for them to sell it). Separately, even if the two scenarios were subject to the same regulations, I would still expect the doctor's office scenario to be more secure. I think that any given patient's home network/device/security practices are more lax than those of most healthcare organizations.
- swirepe 6y ago>That data is not subject to HIPAA regulations. You can be HIPAA compliant and on Google servers. https://cloud.google.com/security/compliance/hipaa/ https://cloud.google.com/security/compliance/hipaa/
- tssva 6y agoThe point wasn't that they couldn't be HIPAA compliant but that they don't have to be.
- caddemon 6y agoThere are downsides to this too though. I wanted a second opinion on an EEG, and after some hassle getting the original office to mail a disk (the only way they can transfer it), the new doctor said they can't view it because they use different software at their hospital for EEGs. These are two well ranked US hospitals, and EEG is a fairly common procedure. Perhaps this is not an inherent downside to the data security, but it's a reality with the current medical system and regulation does play a part in how we got here. And there is no financial incentive for hospitals to fix these sort of issues, in fact there is a disincentive (I'm doing another EEG now...). So I just don't see how it gets fixed without some outside disruption. It may not be a popular opinion on HN but I'm much more concerned with having access to my own medical information than how secure it is.
- iso1631 6y agoA device that measures your blood pressure and sends the results directly via an encrypted connection to your health care provider can be very useful, certainly beats lying in a hospital bed with a printout that the doctor checks every few hours. They key thing is, as always, ensuring that your data remains your property. Europe is bigger on that than the US.
- wikibob 6y agoNot only do they sell it, your Insurance company aggregates and sells it, as does your pharmacy, and anybody else that can get their grubby little hands on it.
- deleted 6y ago[deleted]
- prepend 6y agoMany health systems sell “anonymized” health data that fits the HIPAA description and is completely legal. So if your doctor is part of a larger health system or uses an EMR system odds are that all your data is bundled up and sold. It’s not identifiable easily, but is still sold and used.
- baxtr 6y agoIf you acknowledge the threats, you should acknowledge the opportunities as well. Expressing "horror" every time data is mentioned in connection with health data is a very one-sided reflex. Surely, there are challenges, but why not solve them?
- dr_dshiv 6y agoCompletely agree. A lot of suspicion out there; a balance with optimism is important
- DoofusOfDeath 6y ago> Expressing "horror" every time data is mentioned in connection with health data is a very one-sided reflex. Good call. It was a mistake for me to post such a once-sided comment.