Privacy

Privacy and data handling

How the fellowship QA platform and the resident logbook handle patient information. Written plainly, so anyone can check it.

In short

Four rules for patient data

01

No plain MRNs

Medical record numbers are stored only as one-way hashes. The number itself is never kept.

02

No patient banner

Fellowship clips are de-identified before upload. Resident logbook clips are cropped on the phone, so the banner never leaves the device.

03

No readable text

The resident logbook rejects any clip that still contains readable text.

04

Deleted after a set time

Resident logbook clips are deleted 90 days after the rotation ends, unless kept as teaching cases.

In detail

What happens to patient information

Medical record numbers

When a scan is logged, the patient's medical record number (MRN) is turned into a one-way hash before it is stored. A one-way hash cannot be turned back into the number. In the resident logbook only the last 3 digits are shown on screen, so a resident can tell their own patients apart.

Ultrasound clips

Ultrasound screens show a patient banner with identifying details. Fellows upload clips that have been de-identified first.

In the resident logbook, clips are cropped on the phone before they are uploaded, so the banner never leaves the device. As a second check, the logbook rejects any clip that still contains readable text.

How long clips are kept

Resident logbook clips are deleted 90 days after the rotation ends, unless they are kept as teaching cases.

Who can sign in

Fellows, faculty and directors sign in to the fellowship QA platform with a link sent to their email; there are no passwords. KBEM residents use the resident logbook through a personal link from their rotation director.

This website

About this public website

This public website is a set of plain information pages. It has no forms and no sign-in, sets no cookies and runs no analytics. Its fonts are loaded from Google Fonts.

Questions about privacy: dr.altaweel@gmail.com