Research for responsible governance of our health data

Do you use your smartphone to collect and analyse your performance at the gym? This is one example of how new health-related technologies are being integrated into our lives. This development leads to a growing need to collect, use and share health data electronically. Healthcare, medical research, as well as technological and pharmaceutical companies are increasingly dependent on collecting and sharing electronic health data, to develop healthcare and new medical and technical products.

This trend towards more and more sharing of personal health information raises several privacy issues. Previous studies suggest that people are willing to share their health information if the overall purpose is improved health. However, they are less willing to share their information with commercial enterprises and insurance companies, whose purposes may be unclear or do not meet people’s expectations. It is therefore important to investigate how individuals’ perceptions and attitudes change depending on the context in which their health data is used, what type of information is collected and which control mechanisms are in place to govern data sharing. In addition, there is a difference between what people say is important and what is revealed in their actual behaviour. In surveys, individuals often indicate that they value their personal information. At the same time, individuals share their personal information online despite little or no benefit to them or society.

Do you recognise yourself, do you just click on the “I agree” button when installing a health app that you want to use? This behaviour may at first glance suggest that people do not value their personal information very much. Is that a correct conclusion? Previous studies may not have taken into account the complexity of decisions about integrity where context-specific factors play a major role. For example, people may value sharing health data via a physical activity app on the phone differently. We have therefore chosen to conduct a study that uses a sophisticated multi-method approach that takes context-specific factors into account. It is an advantage in cybersecurity and privacy research, we believe, to combine qualitative methods with a quantitative stated preference method, such a discrete choice experiment (DCE). Such a mixed method approach can contribute to ethically improved practices and governance mechanisms in the digital world, where people’s health data are shared for multiple purposes.

You can read more about our research if you visit the website of our research team. Currently, we are analysing survey data from 2,000 participants from Sweden, Norway, Iceland, and the UK. The research group has expertise in law, philosophy, ethics and social sciences. On this broad basis, we  explore people’s expectations and preferences, while identifying possible gaps within the ethical and legal frameworks. In this way, we want to contribute to making the growing use and sharing of electronic health data ethically informed, socially acceptable and in line with people’s expectations.  

Jennifer Viberg Johansson, Postdoc researcher at the Centre for Research Ethics & Bioethics, working in the projects Governance of health data in cyberspace and PREFER.

Open data access is regulated access

Pär SegerdahlWe usually associate open access with the publication of scientific articles that anyone with internet access can read, without price barrier.

The concept “open access” is now being used also for research data. I have written about this trend towards open data earlier on the Ethics Blog: Openness as a norm.

In many cases, research data are made as freely available as the open access articles that anyone can read; often in connection with the publication of results based on the data. This occurs, for example, in physics.

There is a strong trend towards open data also in medical research; but here the analogy with articles that anyone can read is no longer valid. Biobank and register-based research work with sensitive personal data, to which a number of laws regulating data access apply.

Yet one could speak of a trend towards open data also in this domain. But it then means something different. It’s about making data as accessible as possible for research, within the regulations that apply to this type of data.

Since the relevant laws and ethical frameworks are not only opaque but also differ between countries, the work is largely about developing common models for researchers to work within. One such attempt is made in an article by, among others, Deborah Mascalzoni and Mats G. Hansson at CRB:

The article formulates 15 principles for sharing of biological samples and personal data between researchers. It also includes a template of the written agreements that scientists can make when one research group transfers data or materials to another research group.

Take a look at these principles, and the template of the agreements, and you’ll soon get an idea of how many strict conditions that must be met when biological samples and personal data are shared for research purposes.

Given how open access often is associated with the possibility for anyone at any time to read articles without price barrier, one should perhaps avoid using the term in this context. It may mislead, since this form of data access is heavily regulated, although the aim is to support researchers to share their data and samples.

Pär Segerdahl

