Hacker News new | ask | show | jobs
by SoftTalker 16 days ago
I would never trust any private health data to an app. I don't care what promises or claims they make. The technology is fundamentally untrustable, and even if a vendor is doing the right thing today, they (or any intermediary) could change tomorrow.
3 comments

> they (or any intermediary) could change tomorrow.

Adding to this, my understanding (IANAL) is that any promises to delete or limit sharing of your data could be swept-aside by a bankruptcy judge, putting priority on liquidating the company and its assets for the maximum amount of money for creditors.

If well-intentioned operators erase your data before the company falls into the hands of the trustee or creditors, an unsympathetic legal-system could end up charging them with crimes for it.

> I would never trust any private health data to an app. I don't care what promises or claims they make.

If the app is free software, then you don't need to trust; you can verify instead. See: apps on F-Droid.

> even if a vendor is doing the right thing today,

... they could fail to realize that they were hacked last year.

Sadly, the same issues apply to the copies of your private health data in your doctor's computer, your insurance company's computer, your hospital's computer, your pharmacy's computer, etc.

Avoiding the app reduces the attack surface. With the minor moral victory of not having gone out of your way to make it easy for the enemies of your privacy.

I avoid the medical establishment as much as I can, partly for this reason.