Evaluating the risk of re-identification of patients from hospital prescription records

54Citations
Citations of this article
75Readers
Mendeley users who have this article in their library.

Abstract

Background: Pharmacies often provide prescription records to private research firms, on the assumption that these records are de-identified (i.e., identifying information has been removed). However, concerns have been expressed about the potential that patients can be re-identified from such records. Recently, a large private research firm requested prescription records from the Children's Hospital of Eastern Ontario (CHEO), as part of a larger effort to develop a database of hospital prescription records across Canada. Objective: To evaluate the ability to re-identify patients from CHEO'S prescription records and to determine ways to appropriately de-identify the data if the risk was too high. Methods: The risk of re-identification was assessed for 18 months' worth of prescription data. De-identification algorithms were developed to reduce the risk to an acceptable level while maintaining the quality of the data. Results: The probability of patients being re-identified from the original variables and data set requested by the private research firm was deemed quite high. A new de-identified record layout was developed, which had an acceptable level of re-identification risk. The new approach involved replacing the admission and discharge dates with the quarter and year of admission and the length of stay in days, reporting the patient's age in weeks, and including only the first character of the patient's postal code. Additional requirements were included in the data-sharing agreement with the private research firm (e.g., audit requirements and a protocol for notification of a breach of privacy). Conclusions: Without a formal analysis of the risk of re-identification, assurances of data anonymity may not be accurate. A formal risk analysis at one hospital produced a clinically relevant data set that also protects patient privacy and allows the hospital pharmacy to explicitly manage the risks of breach of patient privacy.

References Powered by Scopus

Statistical analysis with missing data

13963Citations
N/AReaders
Get full text

ℓ-diversity: Privacy beyond k-anonymity

2451Citations
N/AReaders
Get full text

Protecting respondents' identities in microdata release

1824Citations
N/AReaders
Get full text

Cited by Powered by Scopus

A Globally Optimal k-Anonymity Method for the De-Identification of Health Data

189Citations
N/AReaders
Get full text

State-of-the-Art Machine Learning Techniques Aiming to Improve Patient Outcomes Pertaining to the Cardiovascular System

94Citations
N/AReaders
Get full text

Federated Learning on Clinical Benchmark Data: Performance Assessment

91Citations
N/AReaders
Get full text

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

El Emam, K., Dankar, F. K., Vaillancourt, R., Roffey, T., & Lysyk, M. (2009). Evaluating the risk of re-identification of patients from hospital prescription records. Canadian Journal of Hospital Pharmacy, 62(4), 307–319. https://doi.org/10.4212/cjhp.v62i4.812

Readers' Seniority

Tooltip

PhD / Post grad / Masters / Doc 29

60%

Researcher 13

27%

Professor / Associate Prof. 5

10%

Lecturer / Post doc 1

2%

Readers' Discipline

Tooltip

Medicine and Dentistry 20

44%

Computer Science 17

38%

Social Sciences 4

9%

Engineering 4

9%

Article Metrics

Tooltip
Social Media
Shares, Likes & Comments: 1

Save time finding and organizing research with Mendeley

Sign up for free