The digital transformation of the medical sector requires solutions that are convenient and efficient for all stakeholders while protecting patients' sensitive data. One example that has already attracted design-oriented research are medical prescriptions. However, current implementations of electronic prescription management systems typically create centralized data silos, leaving user data vulnerable to cybersecurity incidents and impeding interoperability. Research has also proposed decentralized solutions based on blockchain technology, but privacy-related challenges have often been ignored. We conduct design science research to develop and implement a system for the exchange of electronic prescriptions that builds on two blockchains and a digital wallet app. Our solution combines the bilateral, verifiable, and privacy-focused exchange of information between doctors, patients, and pharmacies through verifiable credentials with a token-based, anonymized double-spending check. Our qualitative and quantitative evaluations as well as a security analysis suggest that this architecture can improve existing approaches to electronic prescription management by offering patients control over their data by design, a high level of security, sufficient performance and scalability, and interoperability with emerging digital identity management solutions for users, businesses, and institutions. We also derive principles on how to design decentralized, privacy-oriented information systems that require both the exchange of sensitive information and double-usage protection.
翻译:医疗部门的数字转型需要对所有利益攸关者来说都是方便和有效的解决办法,同时保护病人的敏感数据。一个已经吸引了面向设计的研究的例子是医疗处方。然而,目前实施电子处方管理系统通常会造成集中的数据筒仓,使用户数据容易发生网络安全事件并妨碍互操作性。研究还提出了基于连锁技术的分散化解决办法,但与隐私有关的挑战常常被忽视。我们进行科学研究,以开发和实施电子处方交换系统,该系统建立在两块链和数字钱包应用软件的基础上。我们的解决办法将医生、病人和药房之间通过可核实的证书进行双边、可核查和以隐私为重点的信息交流结合起来,同时进行象征性匿名的双重需要检查。我们的定性和定量评价以及安全分析表明,这一架构可以通过设计、高度安全性、充分性能和可缩放性,以及与用户、企业和机构新出现的数字身份管理解决方案互操作性,改进病人对电子处方管理的现有办法,从而改进现有办法。我们还提出了如何设计分散、以隐私为导向的信息系统的原则,需要双重的敏感和双重的信息系统。