Health Privacy

Health Privacy

Health information technology (“health IT”) has tremendous potential to improve health care quality and reduce costs while empowering patients to play a greater role in the management of their own care.  At the same time, however, electronic storage and exchange of personal health information poses risks to privacy.  Unaddressed, privacy concerns can stand in the way of realizing the benefits of health IT, for neither patients nor providers will make full use of a system they do not trust.  

In March 2008, CDT launched a major initiative to address the complex privacy issues associated with the growing use of health IT.  Drawing on CDT’s credibility in technology and policy and our leadership as privacy advocates, our Health Privacy Project is bringing the voice of a pragmatic expert to the health privacy conversation.  CDT’s Health Privacy Project takes on key policy questions, including: the proper role of notice and consent, the right of patients to access their own health records, identification and authentication, secondary uses, and enforcement mechanisms.   It addresses both the traditional exchange of records among health plans and providers, as well as new consumer access services and personal health records.

 
 

Follow the latest CDT news with Press Releases, Events, and where we've been featured around the Internet.

Name Issues Date
Deven McGraw will participate in a panel: Think Tank: Legal Issues in Active Medical Product Surveillance
Event: Supported by a grant from FDA, the one-day workshop will feature productive discussion and exchange...
HIPAA 3/8/2010
Deven McGraw will speak at the Privacy Law and Ethics Meet Biomedical Informatics
Event: Deven McGraw will speak at the Privacy Law and Ethics Meet Biomedical Informatics on the topic...
De-Identified Data 3/4/2010
Deven McGraw is presenting on "The New Ball Game: HITECH Breach Notification and Disclosure Accounting Rules"
Event: Deven McGraw is presenting with Gerry Hinkley of Pillsbury Winthrop Shaw Pittman LLP on "The...
3/1/2010
Deven McGraw will participate in the Transatlantic Forum "eHealth: A Driver for Growth and Innovation?"
Event: Deven McGraw will participate in the  Transatlantic Forum "eHealth: A Driver for Growth...
2/23/2010
CDT Health IT Breakfast Panel
Event: Implementation of Health IT: The Payoff for the Patient? The panel will explore the potential for...
HIPAA 2/12/2010

Policy Posts deliver in-depth analysis of current issues affecting the Internet. These documents are a leading resource for policy makers, the press, industry representatives, students, and others interested in legal and policy issues affecting the Internet.

Name Issues Date
Stronger Protections for, and Encouraging the Use of, De-Identified (and "Anonymized") Health Data 1) The Importance of De-Identified Health Data 2) De-Identification, Limited Data Set Requirements... De-Identified Data 6/26/2009
Personal Health Records Need a Comprehensive and Consistent Privacy and Security Framework Personal health records (PHRs) - records that are managed, controlled, and shared by individuals... Personal Health Records 6/9/2009
Improvements and Challenges in Health Privacy Law The economic stimulus bill signed by President Obama on February 17 included provisions making... HITECH/ARRA Implementation 3/27/2009
Privacy and Security Principles for Health Information Technology CDT believes there is a need to adopt a comprehensive privacy and security framework for protection... Privacy Framework 6/24/2008
CDT Offers Metrics for Evaluating DRM The Center for Democracy and Technology (CDT) has issued a paper outlining specific questions that... 9/29/2006

Find all our latest testimony, papers, and other reports here.

Name Author Issues Date
Health Information Privacy: Current Trends, Future Opportunities
Comment: CDT has filed these comments in advance of the FTC's 3rd "Exploring Privacy"...
3/1/2010
CDT Notes Areas of Concern in Comments to HHS on Breach Notification Rules
Comment: CDT's Health Privacy Project, along with The Markle Foundation, submitted comments Oct. 23 that...
Deven McGraw HITECH/ARRA Implementation 10/23/2009
Encouraging the Use of, and Rethinking Protections for De-Identified (and "Anonymized") Health Data
Paper: This paper advocates for stronger standards for de-identification of health data. Patient data...
Deven McGraw De-Identified Data 6/25/2009
CDT Comments to Notice and Draft Description of Health Information Technology Extension Program
Comment: CDT filed comments with the Department of Health and Human Services (HHS) regarding the proper role...
Deven McGraw HITECH/ARRA Implementation 6/11/2009
Testimony of Deven McGraw before the NCVHS
Testimony: Testimony of Deven McGraw, Director, Health Privacy Project Center for Democracy & Technology...
Deven McGraw Personal Health Records 6/9/2009

Featured Blog Posts

On Wednesday, The Robert Wood Johnson Foundation (RWJF) announced the five teams it has selected to participate in an innovative national program called Project HealthDesign: Rethinking the Power and Potential of Personal Health Records. This... Continued »
On Tuesday, the Office of the National Coordinator (ONC) for Health Information Technology (Health IT) within the U.S. Department of Health and Human Services (HHS) issued a proposed rule that establishes two voluntary certification programs to test... Continued »
Today’s Health IT News was focused on the Health IT Policy Committee’s discussions about adding some flexibility to the criteria that health care providers and hospitals will have to meet in order to be “meaningfully using”... Continued »
  On Tuesday, The Office of the National Coordinator (ONC) for Health IT, within the U.S. Dept. of Health and Human Services (HHS), announced plans to reorganize its office by creating five new offices under ONC, including the Office of the... Continued »