BackgroundElectronic medical records, including pathology reports, are often used for research purposes. Currently, there are few programs freely available to remove identifiers while leaving the remainder of the pathology report text intact. Our goal was to produce an open source, Health Insurance Portability and Accountability Act (HIPAA) compliant, deidentification tool tailored for pathology reports. We designed a three-step process for removing potential identifiers. The first step is to look for identifiers known to be associated with the patient, such as name, medical record number, pathology accession number, etc. Next, a series of pattern matches look for predictable patterns likely to represent identifying data; such as dates, accession numbers and addresses as well as patient, institution and physician names. Finally, individual words are compared with a database of proper names and geographic locations. Pathology reports from three institutions were used to design and test the algorithms. The software was improved iteratively on training sets until it exhibited good performance. 1800 new pathology reports were then processed. Each report was reviewed manually before and after deidentification to catalog all identifiers and note those that were not removed.Results1254 (69.7 %) of 1800 pathology reports contained identifiers in the body of the report. 3439 (98.3%) of 3499 unique identifiers in the test set were removed. Only 19 HIPAA-specified identifiers (mainly consult accession numbers and misspelled names) were missed. Of 41 non-HIPAA identifiers missed, the majority were partial institutional addresses and ages. Outside consultation case reports typically contain numerous identifiers and were the most challenging to deidentify comprehensively. There was variation in performance among reports from the three institutions, highlighting the need for site-specific customization, which is easily accomplished with our tool.ConclusionWe have demonstrated that it is possible to create an open-source deidentification program which performs well on free-text pathology reports.
[1]
Clement J. McDonald,et al.
A successful technique for removing names in pathology reports using an augmented search and replace method
,
2002,
AMIA.
[2]
L. Sweeney.
Replacing personally-identifying information in medical records, the Scrub system.
,
1996,
Proceedings : a conference of the American Medical Informatics Association. AMIA Fall Symposium.
[3]
Ricky K. Taira,et al.
Identification of patient name references within medical documents using semantic selectional restrictions
,
2002,
AMIA.
[4]
J. Berman.
Concept-match medical data scrubbing. How pathology text can be used in research.
,
2003,
Archives of pathology & laboratory medicine.
[5]
J. Gilbertson,et al.
Evaluation of a deidentification (De-Id) software engine to share pathology reports and clinical documents for research.
,
2004,
American journal of clinical pathology.
[6]
Latanya Sweeney,et al.
Computational disclosure control: a primer on data privacy protection
,
2001
.
[7]
Hhs Office for Civil Rights.
Standards for privacy of individually identifiable health information. Final rule.
,
2002,
Federal register.
[8]
Latanya Sweeney,et al.
Guaranteeing anonymity when sharing medical data, the Datafly System
,
1997,
AMIA.
[9]
Isaac S. Kohane,et al.
A Submission Model for Use in the Indexing, Searching, and Retrieval of Distributed Pathology Case and Tissue Specimens
,
2004,
MedInfo.