TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Code to Care: Designing Viral Privacy Policies in Healthcare

4 点作者 analogj大约 1 年前

2 条评论

cfu28大约 1 年前
Re: the lack of a standard privacy policy, its a shame that the Model Privacy Notice (MPN) never really took off as a simple, easy to read, privacy policy standard for health apps.<p><a href="https:&#x2F;&#x2F;www.healthit.gov&#x2F;sites&#x2F;default&#x2F;files&#x2F;2018modelprivacynotice.pdf" rel="nofollow">https:&#x2F;&#x2F;www.healthit.gov&#x2F;sites&#x2F;default&#x2F;files&#x2F;2018modelprivac...</a><p>---<p>The concept of creating a standard viral privacy policy that dictates how your data must be access&#x2F;stored&#x2F;secured is super intriguing. I&#x27;m imagining a future where this is combined with FHIR - you can link individual FHIR resources to a privacy policy&#x2F;license, maybe sign the resources so they can&#x27;t be easily modified. Downstream apps would need to respect the policies before using the data.<p>I do wonder who would actually push for this though - I care, privacy focused patients would care, but getting adoption might be tough?<p><a href="https:&#x2F;&#x2F;www.hl7.org&#x2F;fhir&#x2F;provenance.html" rel="nofollow">https:&#x2F;&#x2F;www.hl7.org&#x2F;fhir&#x2F;provenance.html</a>
analogj大约 1 年前
Hey HN,<p>I&#x27;ve been thinking alot about the properties of viral open-source licenses and how this could be applied to other legal documents - like privacy policies.<p>As it becomes possible to share our medical records with caregivers and practitioners using apps, we have to trust that these apps are managing our data and respecting our privacy as we intend. But it&#x27;s not only the app developers we need to care about, its also the third party services that they use (and share our data with), and the third party services that they then use.. its turtles all the way down.<p>What if we could create standardized &quot;viral&quot; privacy policy clauses, similar to the viral nature of open-source notice &amp; attribution clauses.. which would &quot;follow&quot; Personally Identifiable Information (PII) and Protected Health Information (PHI).. ensuring it&#x27;s used as we intend, no matter the degrees of separation?