Federating IoT datastreams and optimize equipment usage in Healthcare

Fediverse in Healthcare

There are two interesting cases I would be happy to fediversize, being currently discussed in a team I am part of.

  1. Secure handling of sensitive IoT data. The case is how to gather and securely process medical telemetry from smartwatches, fitness bands and such (implants being discreetly undiscussed). Following the idea of decentralization, I can imagine a locally hosted server, collecting data, somehow combined with secure backbone (TePeWu: Friendica | Search) and some ways to make data available either for an authorized physician or (locally anonymized) for research. But here I got to the limit of my technical imagination and I have no one around here to help me. Anyone?
  2. There are two cases of matching underused assets with their possible uses
    2.1. Medical equipment being left unused once research projects are done and closed with professionals lacking funding to buy/rent it on a commercial basis.
    2.2. Clinical research programs looking for certain specific “cases” – volunteers for experimental treatment or diagnostics – and people who cannot afford therapy for their less common conditions.
    I can imagine using fediverse approach to create decentralized exchange, without central database, using tag and categories to find matching pairs.

Do you think it is worth some effort?

This sounds interesting, also given the popularity of citizen science along with Raspberry Pi , Arduino for projects etc, it would be great to be able to gather data and share this in real time with selected entities. Even if this is say local temperature data, the potential of having a real time data could be useful to others. I would guess with a ‘bot’ account once all set up it would just require monitoring to keep it working.

Raspberry Pi + data input + something to glue together + toot (command line tool) could be really useful here.

I am developing a standard “micro-self-hosting” installation based on Yunohost which is very flexible and scalable. If I find someone to work with, we can start building upon this platform.

For this topic I also created a brainstorming post in our Lemmy Fediverse Futures companion space:

Yes, if a massive amount of effort is spent on the security side, probably making it incompatible with today’s Fediverse. The Mastodon/Pleroma/etc-flavor of ActivityPub that exists today is woefully insufficient for handling super private information like medical data.

This is most likely the easiest route. It does not involve the privacy of people, just management of “things”.

The barriers to “fediversize” super private identifying information such as medical information of people are primarily on the legal obligations (HIPAA in the USA, IDK what in EU or other regions) around informed consent, storage laws, and regulatory oversight (ex: HIPAA & The Patriot Act gives the US government great latitude to obtain medical records without a warrant). For example, I am under the impression that many US based medical practices and hospitals will reject medical records solely given to them by patients and instead say “that’s nice but we also want your old medical providers’ copy directly from them” due to the history of Americans doctoring our own records to attain prescription drugs under a false pretense (this is not the peoples’ fault – the addictiveness of certain prescription drugs pushed heavily by certain pharma companies created this sorry situation). This is a different problem of authentication and authorization that is not solved by technology, but credibility and provenance. That means the federating behaviors may need to be different in different jurisdictions, and therefore lead to cross-digital-border compatibility issues. Simply making things federated does not erase national digital border issues, nor credibility/provenance issues.

I appreciate you raised the legal aspect of it, which is my usual blind spot.
As for the technical aspect of privacy, I see e2ee quite possible.
But indeed, medical data are not really suitable for fediverse model, which is rather about broadcasting than restricted access.

So, I will go for the fruits hanging lower than that.
However, outside fediverse itself, it would be great to find a way to process medical data in a decentralised and personally-controlled way. But that’s for another time and place I guess…

Thanks for your input.