English

Patient-centric health data sovereignty: an approach using Proxy re-encryption

Cryptography and Security 2023-07-04 v1

Abstract

The exponential growth in the digitisation of services implies the handling and storage of large volumes of data. Businesses and services see data sharing and crossing as an opportunity to improve and produce new business opportunities. The health sector is one area where this proves to be true, enabling better and more innovative treatments. Notwithstanding, this raises concerns regarding personal data being treated and processed. In this paper, we present a patient-centric platform for the secure sharing of health records by shifting the control over the data to the patient, therefore, providing a step further towards data sovereignty. Data sharing is performed only with the consent of the patient, allowing it to revoke access at any given time. Furthermore, we also provide a break-glass approach, resorting to Proxy Re-encryption (PRE) and the concept of a centralised trusted entity that possesses instant access to patients' medical records. Lastly, an analysis is made to assess the performance of the platform's key operations, and the impact that a PRE scheme has on those operations.

Keywords

Cite

@article{arxiv.2307.01175,
  title  = {Patient-centric health data sovereignty: an approach using Proxy re-encryption},
  author = {Bruno Rodrigues and Ivone Amorim and Ivan Costa and Alexandra Mendes},
  journal= {arXiv preprint arXiv:2307.01175},
  year   = {2023}
}

Comments

16 pages, 13 figures

R2 v1 2026-06-28T11:20:59.731Z