Electronic health records represent a rich and growing source of clinical data for research. Privacy, regulatory, and institutional concerns limit the speed and ease of sharing this data. VaultDB is a framework for securely computing SQL queries over private data from two or more sources. It evaluates queries using secure multiparty computation: cryptographic protocols that evaluate a function such that the only information revealed from running it is the query answer. We describe the development of a HIPAA-compliant version of VaultDB on the Chicago Area Patient Centered Outcomes Research Network (CAPriCORN). This multi-institutional clinical research network spans the electronic health records of nearly 13M patients over hundreds of clinics and hospitals in the Chicago metropolitan area. Our results from deploying at three health systems within this network show its efficiency and scalability for distributed clinical research analyses without moving patient records from their site of origin.
翻译:隐私、监管和体制问题限制了分享这些数据的速度和方便性。 VaultDB是安全计算来自两个或两个以上来源的私人数据 SQL 查询的框架。它使用安全的多功能计算来评估查询:加密协议评估一项功能,这样从运行中只能得到查询答案。我们描述了芝加哥地区病人中心结果研究网络(CAPriCORN)上符合HIPAA的VaultDB版本的开发情况。这个多机构临床研究网络覆盖了芝加哥大都会地区数百个诊所和医院的近13M病人的电子健康记录。我们在这个网络内部署三个保健系统的结果显示,在不将病人记录从其原住地移出的情况下,传播临床研究分析是有效和可扩缩的。