The HIPAA Journal is the leading provider of news, updates, and independent advice for HIPAA compliance

NSF Grant Funds Development of Mobile Cloud Dietary Assessment Tool

Many mHealth apps lack sufficient controls to keep patient data secure. In late 2014, a Trustworthy Health and Wellness (THaW) project funded by the National Science Foundation (NSF) determined that 63% of popular mHealth apps were not encrypting data (out of a test sample of 22), potentially placing data at risk of theft. Furthermore, 81% of mHealth apps were using third party storage or hosting services.

The benefits of mHealth apps for patients and healthcare providers are considerable. Unfortunately, healthcare providers wishing to use mHealth apps are prevented from doing so by HIPAA. Unless developers of mHealth apps encrypt stored and transmitted data to a nationally accepted standard, or implement other controls to keep data secure, use of the apps by the healthcare industry will be limited.

Secure Mobile Cloud Dietary Assessment Tool Under Development

University of Massachusetts Medical School and UMass Lowell have recently embarked on a new National Science Foundation grant funded project to test a new mHealth infrastructure that will allow patient data to be collected securely; satisfying requirements of the HIPAA Security Rule.

The researchers aim to solve a problem long faced by researchers. How to accurately record daily calorific intake by research study participants. While patients in such studies can keep a food diary to record everything they eat and drink, there is a tendency for data to be recorded later. Patients invariably forget items they have consumed, incorrectly estimate quantities, and do not record where they eat. Inaccuracies can all too easily creep in when patients self-report calorific intake.

Get The FREE
HIPAA Compliance Checklist

Immediate Delivery of Checklist Link To Your Email Address

Please Enter Correct Email Address

Your Privacy Respected

HIPAA Journal Privacy Policy

Greater Data Accuracy Without Violating HIPAA Rules

The current method used to determine calorific intake is reliant on patients remembering everything they ate over a 24-hour period. According to Dr. Yunsheng Ma, Associate Professor of Medicine at UMass Medical School, the current system “does not prompt people to be aware of what they’re consuming. In order to increase the accuracy of self-reported dietary estimates and reduce patient-bias, technology-based enhancements are needed.”

The new study will make it far easier for patients to record food and drink intake, and crucially the method used in the study will allow calorific consumption to be estimated with far greater accuracy. Patients will be provided with a “multimedia food journal,” which will allow them to take photographs of what they eat, and where they eat it.

The software – called Flexware – will ensure that HIPAA Rules are not violated. If an individual appears in an image that is stored or transmitted, any image of their body will be blurred. Other controls will ensure that the video and audio record will not allow the patient to be identified.

A More Accurate Method of Assessing the Effectiveness of Weight Loss Interventions

According to Yan Luo, PhD, associate professor of electrical and computer engineering., “The security policies on data transfer will be enforced with the emerging software defined networking technologies to ensure secure data paths from homes to the data centers.”

The technology has potential to significantly help assess the effectiveness of weight loss interventions and according to Dr. Ma, “[The study] has the potential for significant breakthroughs for the development of mobile cloud dietary assessment.”

Author: Steve Alder is the editor-in-chief of HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist