Health apps and connected devices can store and share personal health information, including blood pressure readings, blood sugar levels, and medication schedules. This data can be used by third-party service providers, advertising companies, and data brokers, potentially compromising user privacy.
Privacy Concerns
The issue largely comes down to who has the data and why they have it. The Health Insurance Portability and Accountability Act (HIPAA) protects certain health information maintained by covered health care providers, health plans, and their business associates. However, a consumer who downloads a health or fitness app independently may not be covered by the same HIPAA protections.
Federal regulators have taken action against several major health-related companies over alleged data-sharing practices. For example, GoodRx agreed to pay a $1.5 million civil penalty to settle Federal Trade Commission allegations involving the disclosure of health information to companies including Facebook and Google.
Data Brokers
Data brokers can combine information from multiple sources, including commercial records, online activity, public records, and information obtained from other companies. This can create detailed profiles of individuals, including their health information. Consumers may not realize how many pieces of information are being combined into a profile.
Connected health devices can add another layer of complexity. For example, certain blood pressure monitors can send readings to an app through Bluetooth, allowing users to store and manage their heart-health history.
Consumers can take steps to reduce the amount of health information shared through their phones. On an iPhone, users can go to Settings, Privacy & Security, and Tracking to disable requests from apps seeking permission to track activity.
Original reporting: WOWO News/Talk (Fort Wayne) — read the source article.