Record Gatekeeping Server for Secure Patient Data Sharing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems for managing access to secure records, such as patient medical records, are cumbersome and lack control over access and distribution, often resulting in incomplete sharing of information and difficulties in monitoring access across multiple healthcare providers.
Innovation Solution
A secure record management system with a record gatekeeping server that allows granular control over access by identifying and granting access to entire records based on third-party mentions, using indicators like '@' and '#', and revoking access upon events or predetermined times, ensuring secure and timely sharing of patient information across healthcare providers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If paper files are kept in a singular location with limited access, then security and control are maintained, but sharing records with multiple healthcare providers is cumbersome and not timely
Solution Approach 1:
The patent creates electronic copies of patient records that can be distributed to multiple healthcare providers while the original master copy remains secured in a single location. The system generates and manages copies through standardized formats like C-CDA, allowing widespread access without compromising the security of the original records.
Solution Approach 2:
The patent introduces a centralized record management system that acts as an intermediary between the secured paper files and multiple healthcare providers. This intermediary system handles the conversion, distribution, and tracking of record copies, eliminating the need for direct physical sharing while maintaining security protocols.
2Ease of operation
If electronic record management systems are implemented, then convenient storage and access are achieved, but control over access and distribution to multiple practices is lost
Solution Approach 1:
The patent implements comprehensive tracking and logging mechanisms that provide feedback on who accesses records, when, and for what purpose. The system monitors distribution across multiple practices and maintains an audit trail, enabling the originating practice to review and control access patterns while still allowing convenient electronic access.
Solution Approach 2:
The patent creates a universal record format (C-CDA) that serves multiple functions: it enables convenient electronic storage and access across different systems, maintains standardized data structure for interoperability, and incorporates security controls that work across diverse healthcare practices. This single format handles both accessibility and control requirements.
3Adaptability or versatility
If copies of patient records are distributed to multiple practices, then collaboration on patient care is improved, but monitoring and controlling access becomes difficult
Solution Approach 1:
The patent merges the monitoring and control functions into the core record management system itself, rather than requiring separate tracking mechanisms at each practice. The centralized system consolidates access monitoring across all distributed copies, providing unified control and reducing the overall complexity of tracking record usage across multiple locations.
Data Source
AI summary
The disclosed embodiments can be used to manage access to a plurality of secure records, thus rendering access to the secure records more efficient and secure. In accordance with certain disclosed embodiments, the secure records access management system may be configured to grant and revoke access to secure records upon the occurrence of certain events. In some disclosed embodiments, a secure record may comprise a third-party mention to indicate to the system that a third party should be granted access to the secure record. After detecting such a third-party mention, the system may grant the third party temporary access to information in the secure record, where such temporary access comprises the same access permissions as other users having access to the same secure record. The system may revoke the third party's access to the secure record.


