An open platform for personal health record apps with platform-level privacy protection

One of the main barriers to the adoption of Personal Health Records (PHR) systems is their closed nature. It has been argued in the literature that this barrier can be overcome by introducing an open market of substitutable PHR apps. The requirements introduced by such an open market on the underlying platform have also been derived. In this paper, we argue that MyPHRMachines, a cloud-based PHR platform recently developed by the authors, satisfies these requirements better than its alternatives. The MyPHRMachines platform leverages Virtual Machines as flexible and secure execution sandboxes for health apps. MyPHRMachines does not prevent pushing hospital- or patient-generated data to one of its instances, nor does it prevent patients from sharing data with their trusted caregivers. External software developers have minimal barriers to contribute innovative apps to the platform, since apps are only required to avoid pushing patient data outside a MyPHRMachines cloud. We demonstrate the potential of MyPHRMachines by presenting two externally contributed apps. Both apps provide functionality going beyond the state-of-the-art in their application domain, while they did not require any specific MyPHRMachines platform extension.

[1]  J. Jeffrey Carr,et al.  Patient-controlled sharing of medical imaging data across unaffiliated healthcare organizations , 2013, J. Am. Medical Informatics Assoc..

[2]  Judith Belle Brown,et al.  Family physicians' perspectives on personal health records: qualitative study. , 2011, Canadian family physician Medecin de famille canadien.

[3]  D A Pierce,et al.  Radiation-Related Cancer Risks at Low Doses among Atomic Bomb Survivors , 2000, Radiation research.

[4]  C. Shapiro,et al.  Technology Adoption in the Presence of Network Externalities , 1986, Journal of Political Economy.

[5]  The value of personal health records. A joint position statement for consumers of healthcare by the American Health Information Management Association and the American Medical Informatics Association. , 2007, Journal of AHIMA.

[6]  Radiological protection and safety in medicine , 1996 .

[7]  I. Kohane,et al.  No small change for the health information economy. , 2009, The New England journal of medicine.

[8]  Mark von Rosing,et al.  Business Process Model and Notation - BPMN , 2015, The Complete Business Process Handbook, Vol. I.

[9]  Kenneth D. Mandl,et al.  Helping High-Risk Youth Move through High-Risk Periods: Personally Controlled Health Records for Improving Social and Health Care Transitions , 2011, Journal of diabetes science and technology.

[10]  Dean F. Sittig Personal health records on the internet: a snapshot of the pioneers at the end of the 20th Century , 2002, Int. J. Medical Informatics.

[11]  Eric Maiwald,et al.  Network Security: A Beginner's Guide , 2001 .

[12]  Pieter Van Gorp,et al.  MyPHRMachines: Lifelong Personal Health Records in the cloud , 2012, 2012 25th IEEE International Symposium on Computer-Based Medical Systems (CBMS).

[13]  Michael J Pentecost,et al.  American College of Radiology white paper on radiation dose in medicine. , 2007, Journal of the American College of Radiology : JACR.

[14]  H. Nagel,et al.  CT-Expo - ein neuartiges Programm zur Dosisevaluierung in der CT , 2002 .

[15]  Uzay Kaymak,et al.  Addressing health information privacy with a novel cloud-based PHR system architecture , 2012, 2012 IEEE International Conference on Systems, Man, and Cybernetics (SMC).

[16]  Keng Siau,et al.  Health care informatics , 2003, IEEE Transactions on Information Technology in Biomedicine.

[17]  Paul C Tang,et al.  Your doctor's office or the Internet? Two paths to personal health records. , 2009, The New England journal of medicine.

[18]  Jay Katz,et al.  The Silent World of Doctor and Patient , 1984 .

[19]  James H. Kaufman,et al.  Varieties of interoperability in the transformation of the health-care information infrastructure , 2007, IBM Syst. J..

[20]  J.,et al.  The New England Journal of Medicine , 2012 .

[21]  Hubert Thierens,et al.  EU EPI-CT project: biomarkers of radiation sensitivity for children , 2012 .

[22]  Judith Belle Brown,et al.  Family physicians’ perspectives on personal health records , 2011 .

[23]  J Michael McCoy,et al.  The SMART Platform: early experience enabling substitutable applications for electronic health records , 2012, J. Am. Medical Informatics Assoc..

[24]  BoudreauKevin Open Platform Strategies and Innovation , 2010 .

[25]  R. Kaushal,et al.  Consumer attitudes toward personal health records in a beacon community. , 2011, The American journal of managed care.

[26]  Isaac S Kohane,et al.  Indivo x: developing a fully substitutable personally controlled health record platform. , 2010, AMIA ... Annual Symposium proceedings. AMIA Symposium.

[27]  Richard Ben Cramer WHAT IT TAKES. , 1992 .

[28]  Adam Bosworth,et al.  What it takes: characteristics of the ideal personal health record. , 2009, Health affairs.

[29]  Pieter Van Gorp,et al.  Lifelong Personal Health Data and Application Software via Virtual Machines in the Cloud , 2014, IEEE Journal of Biomedical and Health Informatics.

[30]  J. E. Rotunda,et al.  A System for Environmental Monitoring , 1993 .

[31]  Eric Maiwald,et al.  Network Security: A Beginner's Guide, Second Edition , 2003 .

[32]  D. McGraw,et al.  Privacy as an enabler, not an impediment: building trust into health information exchange. , 2009, Health affairs.

[33]  David W. Bates,et al.  Viewpoint Paper: A Research Agenda for Personal Health Records (PHRs) , 2008, J. Am. Medical Informatics Assoc..

[34]  G. Stamm,et al.  [CT-expo--a novel program for dose evaluation in CT]. , 2002, RoFo : Fortschritte auf dem Gebiete der Rontgenstrahlen und der Nuklearmedizin.

[35]  Eugene B. Brody,et al.  The Silent World of Doctor and Patient , 1986 .

[36]  William R Doucette,et al.  Family physician perceptions of personal health records. , 2010, Perspectives in health information management.

[37]  A Jahnen,et al.  Automatic computed tomography patient dose calculation using DICOM header metadata. , 2011, Radiation protection dosimetry.

[38]  Kevin J. Boudreau,et al.  Open Platform Strategies and Innovation: Granting Access vs. Devolving Control , 2010, Manag. Sci..

[39]  T. Houston,et al.  The potential of consumer health informatics. , 2001, Seminars in oncology nursing.