IP Library Granted Patent US 12,182,877
Granted Patent B1
US 12,182,877 · App. 18/139,735 · Granted Dec 31, 2024

Using de-identified healthcare data to evaluate post-healthcare facility encounter treatment outcomes

Inventor: Andrew L. Paris (Victor, NY)
Assignee: Vigilytics LLC
G06Q40/08G06F21/6245G06F21/6254G16H10/20G16H10/40G16H15/00G16H40/20G16H50/70G16H70/60H04L63/0428H04L63/10H04L63/102G16H10/60
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,182,877
App. No.
18/139,735
Granted
Dec 31, 2024
Kind
B1
Abstract

A computer-implemented method includes producing medical information that characterizes a group of individuals from a set of private data representing pre or post-encounter characteristics of the individuals, wherein the individuals have had encounters with a healthcare facility. The identity of the individuals is unattainable from the produced medical information. The method also includes providing the produced medical information to report the pre or post-encounter characteristics of the group.

Claims (44)

1. A computer-implemented method comprising:

receiving, at an encryption server, a request from a user device for medical information that characterizes a first group composed of multiple individuals, wherein at least one of the multiple individuals has not authorized provision of personal medical information at any time;

determining based on a privacy-preserving rule that the first group comprises at least a defined minimum number of individuals to prevent an ability to infer an association with the multiple individuals;

in response to determining that the first group comprises at least the defined minimum number of individuals, producing, by a processor of the encryption server, request tokens from encrypting a first set of personally identifiable information (PII) associated with the multiple individuals, wherein the first set of PII is provided in the request and wherein each of the request tokens is unique to a corresponding individual of the multiple individuals;

comparing, at a data server in communication with the encryption server, the request tokens to tokens generated independently of the request tokens and stored in a database to find matching tokens associated with the medical information to be produced without decrypting the request token,

wherein the independently generated tokens are generated by encrypting individual-level PII from a second set of PII associated with a second group of individuals, each of the independently generated tokens being unique to a corresponding individual from the second group and associated with de-identified medical information about the corresponding individual from the second group, the de-identified medical information representing pre- or post-encounter characteristics of the corresponding individual from the second group, the de-identified medical information being stored remotely and seperately from the encryption server, and

wherein at least a portion of the independently generated tokens match at least a portion of the request tokens if the portion of the independently generated tokens and the portion of the request tokens correspond to the same individuals;

determining based on a second privacy-preserving rule that at least a defined minimum number of matches have been found;

determining that identifying data associated with the first group composed of multiple individuals has a minimum variation from identifying data associated with given individuals in previous requests in a predefined period of time;

subsequent to determining that at least the defined minimum number of matches have been found and determining that the identifying data associated with the first group composed of multiple individuals has the minimum variation from the identifying data associated with the given individuals in the previous requests, producing the de-identified medical information associated with the independently generated tokens that were matched to the request tokens; and providing the produced de-identified medical information to report characteristics of the first group.

2. The computer-implemented method of claim 1 , wherein the provided de-identified medical information is provided in conformity with the Health Insurance Portability and Accountability Act (HIPAA).

3. The computer-implemented method of claim 1 , in which the independently generated tokens and the request tokens are similarly encrypted.

4. The computer-implemented method of claim 1 , wherein producing the one or more request tokens comprises producing the one or more request tokens in a reproducible manner.

5. A system comprising:

a computing device comprising:

a memory configured to store instructions; and

a processor to execute the instructions to perform operations comprising:

receiving, at an encryption server, a request from a user device for medical information that characterizes a first group composed of multiple individuals, wherein at least one of the multiple individuals has not authorized provision of personal medical information at any time;

determining based on a privacy-preserving rule that the first group comprises at least at defined minimum number of individuals to prevent an ability to infer an association with the multiple individuals;

in response to determining that the first group comprises at least the defined minimum number of individuals, producing at the encryption server, request tokens from encrypting a first set of personally identifiable information (PII) associated with the multiple individuals, wherein the first set of PII is provided in the request and wherein each of the request tokens is unique to a corresponding individual of the multiple individuals;

comparing, at a data server in communication with the encryption server, the request tokens to tokens generated independently of the request tokens and stored in a database to find matching tokens associated with the medical information to be produced without decrypting the request token,

wherein the idependently generated tokens are generated by encrypting individual-level PII from a second set of PII associated with a second group of individuals, each of the independently generated tokens being unique to a corresponding individual from the second group and associated with de-identified medical information about the corresponding individual from the second group, the de-identified medical information representing pre- or post-encounter characteristics of the corresponding individual from the second group, the de-identified medical information being stored remotely from the encryption server, and

wherein at least a portion of the independently generated tokens match at least a portion of the request tokens if the portion of the independently generated tokens and the portion of the request tokens correspond to the same individuals;

determining based on a second privacy-preserving rule that at least a defined minimum number of matches that have been found;

determining bsed on a second privacy-preserving rule that at least a defind minimum number of matches have been found; 'determining that identifying data associated with the first group composed of multiple individuals has a minimum variation from identifying data associated with given individuals in a previous requests in a predefined period of time;

subsequent to the determining that at least the defined minimum number of matches have been found and determining that the identifying data associated with the first group composed of multiple individuals has the minimum variation from the identifying data associated with the given individuals in the previous requests, producing the de-identified medical information associated with the independently generated tokens that were matched to the request tokens; and

providing the produced de-identified medical information to report characteristics of the first group.

6. The system of claim 5 , wherein the provided de-identified medical information is provided in conformity with the Health Insurance Portability and Accountability Act (HIPAA).

7. The system of claim 5 , in which the independently generated tokens and the request tokens are similarly encrypted.

8. The system of claim 5 , wherein producing the one or more request tokens comprises producing the one or more request tokens in a reproducible manner.

9. One or more computer readable storage devices storing instructions that are executable by a processing device, and upon such execution cause the processing device to perform operations comprising:

receiving, at an encryption server, a request from a user device for medical information that characterizes a first group composed of multiple individuals, wherein at least one of the multiple individuals has not authorized provision of personal medical information at any time;

determining based on a privacy-preserving rule that the first group comprises at least a defined minimum number of individuals to prevent an ability to infer an association with the multiple individuals;

in response to determining that the first group comprises at least the defined minimum number of individuals, producing, by a processor of the encryption server, request tokens from encrypting a first set of personally identifiable information (PII) associated with the multiple individuals, wherein the first set of PII is provided in the request and wherein each of the request tokens is unique to a corresponding individual of the multiple individuals;

comparing, at a data server in communication with the encryption server, the request tokens to tokens generated independently of the request tokens and stored in a database to find matching tokens associated with the medical information to be produced without decrypting the request token,

wherein the idependently generated tokens are generated by encrypting individual-level PII from a second set of PII associated with a second group of individuals, each of the independently generated tokens being unique to a corresponding individual from the second group and associated with de-identified medical information about the corresponding individual from the second group, the de-identified medical information representing pre- or post-encounter characteristics of the corresponding individual from the second group, the de-identified medical information being stored remotely from the encryption server, and

wherein at least a portion of the independently generated tokens match at least a portion of the request tokens if the portion of the independently generated tokens and the portion of the request tokens correspond to the same individuals;

determining based on a second privacy-preserving rule that at least a defined minimum number of matches have been found;

determining that identifying data associated with the first group composed of multiple individuals has a minimum variation from identifying data associated with given individuals in previous requests in a predefined period of time;

subsequent to determining that at least the defined minimum number of matches have been found and determining that the identifying data associated with the first age group composed of multiple individuals has the minimum variation from the identifying data associated with the given individuals in the previous requests, producing the de-identified medical information associated with the independently generated tokens that were matched to the request tokens; and

providing the produced de-identified medical information to report characteristics of the first group.

10. The computer readable storage devices of claim 9 , wherein the provided de-identified medical information is provided in conformity with the Health Insurance Portability and Accountability Act (HIPAA).

11. The computer readable storage devices of claim 9 , in which the independently generated tokens and the request tokens are similarly encrypted.

12. The computer readable storage devices of claim 9 , wherein producing the one or more request tokens comprises producing the one or more request tokens in a reproducible manner.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 28, 2023
From: PARIS III, ANDREW L.
To: VIGILYTICS LLC
Reel/Frame 063490/0183 →
Continuity (8)
Continuation 17167247 · Feb 4, 2021
Continuation 15939727 · Mar 29, 2018
Continuation 15606265 · May 26, 2017
Continuation 15136318 · Apr 22, 2016
Continuation 14082433 · Nov 18, 2013
Continuation In Part 12827745 · Jun 30, 2010
Provisional Application 61729207 · Nov 21, 2012
Provisional Application 61222428 · Jul 1, 2009
Cited By (1)
US 12,451,223