Skip to content

Securing of PPI via bidirectional hybrid encryption #161

@fguitton

Description

@fguitton

I was having a conversation this morning with Paul Matthews. We were talking about the handling of patient information in OPTIMISE as well as the different compliance roads that would be taken by a hospital. We came to the conclusion that some amount of PPI MUST be stored by the application: Things like the NHS number or name (#22) will be useful for consent handling and erasure recording (#146, #147, #149).

Nevertheless we must make sure these data do not get stored in clear text and uses some sort of hospital controlled unlocking mechanism (Possibly though use of a AES/RSA combo and irreversible hash)

Metadata

Metadata

Assignees

No one assigned

    Labels

    baseA pillar of the projectcriticalSuper important things

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions