Weak points of the electronic patient file: How secure are your data?

Weak points of the electronic patient file: How secure are your data?
The introduction of the electronic patient file (EPA) in Germany is imminent after it has been tested in model regions such as Hamburg, Franconia and North Rhine-Westphalia since January 15, 2025. However, the Germany-wide roll-out was postponed by originally in mid-February to April 2025, as there are still technical problems that urgently need to be solved. Andreas Gassen, CEO of the National Association of Statutory Health Insurance Physicians, expresses the fear that there could be further delays due to the lack of software in many medical practices.
doctors criticize the electronic patient files in their current form and bring serious concerns about data protection and patient secret. Dr. Martin Ebel and Dr. Sebastian Auel, general practitioner from Bad Hersfeld, are skeptical. EBEL notes that the EPA only makes sense if doctors can also access all relevant information, which depends on the patient. AUEL, on the other hand, fears an escalation of the bureaucracy because the EPA will not replace its own documentation of the practical systems.
critical security aspects
The fears of the doctors regarding the EPA are not unfounded. An expert opinion from the Fraunhofer Institute for Safe Information Technology (SIT) has identified 21 weaknesses, including four serious security gaps. Risks consist of possible attacks by hackers and unauthorized actors within the system. A particularly worrying point is the long response time of up to 72 hours for providers for security gaps on weekends and public holidays. The gematics, which is responsible for the implementation of the EPA, has already taken steps to remedy these weak points, but the complete guarantee of IT security and data protection before the nationwide introduction remains questionable.
Another critical aspect of the EPA is the question of securing the data collected. Patients, especially older people, are unsettled in terms of digital technologies and the potential risks associated with the digitization of their health data. The comparison of the safe handling of online banking is often cited in order to make the concerns regarding data security clear.
advantages and existing challenges
Despite the worried concerns, there are also voices that emphasize the advantages of the EPA. Dr. Frank Klein, family doctor from Schenklengsfeld, sees the EPA potential for greater transparency in healthcare and avoiding double examinations. However, in order to implement these advantages, a stable system is necessary that meets the legal requirements.
The EPA will be available to all insured persons if they do not actively object. After the test phase, the doctors are legally obliged to fill the EPA with specific data. This measure is part of the comprehensive digitization of the German healthcare system, which is funded by various laws such as the E-Health Act and the Digital Care Act as well as structured digital networking via the telematics infrastructure.
Ultimately, it remains to be seen to what extent the patient academy meets the requirements and expectations and whether the questions about data security and bureaucracy design can be adequately answered. The challenges are complex, and a common effort for everyone involved is needed to gain the trust of the patients and successfully implement the EPA in everyday life.Details | |
---|---|
Quellen |