• allende2001@lemmygrad.ml
    link
    fedilink
    arrow-up
    14
    ·
    9 days ago

    Full text of reddit post:

    I’ll keep this short because I’m genuinely fuming.

    I work in tech so I know companies hoard data. But this one hit different.

    I know a doctor who mentioned to me that Palantir, the American surveillance company that worked with ICE and the NSA, now has access to “operational data” from our NHS. I thought… that can’t include patient records, right?

    Turns out, under the Federated Data Platform contract, Palantir gets access to pseudonymised patient data across all of England. Read this: Medact - Briefing: Concerns Regarding Palantir Technologies and NHS Data Systems

    That means my GP visits, my prescriptions, my hospital stays, all of it, flowing through their systems. There’s no consent screen. No checkbox. No “opt out of sharing with a US defence contractor”. Just a quiet government deal worth £330 million.

    And here’s the bit that made my blood boil: NYC’s public hospitals just dropped Palantir because of activist pressure. NYC hospitals were sharing private health data with Palantir. And they still walked away.

    But the UK? We’re doubling down. Palantir now has over half a billion pounds in UK contracts… MoD, FCA, police forces, even bloody councils.

    I tried to find out if I can request my data from Palantir. You can’t. They’re not a “healthcare provider” so GDPR gets weird. But they definitely have a digital shadow of me sitting on their servers.

    How is this legal? And what happens when Palantir gets bought by someone worse, or when a hacker breaches their systems, or when the government decides “operational data” suddenly includes names and addresses?

    Because “trust us” didn’t work for Google, for Facebook, or for any of the other companies that promised not to be evil.

    I’m genuinely considering a subject access request to my NHS trust just to see what they have on me

    • knfrmity@lemmygrad.ml
      link
      fedilink
      English
      arrow-up
      13
      ·
      9 days ago

      Because “trust us” didn’t work for Google, for Facebook, or for any of the other companies that promised not to be evil.

      Well at least Palantir is promising to be evil.

    • cfgaussian@lemmygrad.ml
      link
      fedilink
      arrow-up
      12
      ·
      9 days ago

      And what happens when Palantir gets bought by someone worse

      Who would be even worse than Palantir? They’re as evil as you can get. They’re practically fused with the Zionist entity and the imperialist deep state.

      • MeetMeAtTheMovies [they/them]@hexbear.net
        link
        fedilink
        English
        arrow-up
        8
        ·
        9 days ago

        They’re literally trying to finalize the creation of the digital panopticon and police precrime. This is something that privacy nerds would have said said as an exaggeration 10 years except now there’s no hyperbole.

  • Bronstein_Tardigrade@lemmygrad.ml
    link
    fedilink
    arrow-up
    13
    ·
    9 days ago

    Isn’t crap like this why EU countries are suddenly interested in Linux and open source software. By US law, anything contracted to a server powered by US software, anywhere in the world, needs to be accessible to the US government. China started a purge years ago, with all government computers and servers to be running KylinOS by 2030, though the Western press rarely covered it. The open source software community has been screaming about proprietary software for years, but government bureaucrats were blinded by $ signs.

  • MeetMeAtTheMovies [they/them]@hexbear.net
    link
    fedilink
    English
    arrow-up
    12
    ·
    9 days ago

    Turns out, under the Federated Data Platform contract, Palantir gets access to pseudonymised patient data across all of England.

    Everyone should read “pseudonymised patient data” as “data that took us a few minutes to assign to a real person instead of a few seconds”. And that’s being generous. If Palantir bought your phone’s geolocation data (they have) and knows you were at your doctor’s office from 11:25 to 12:10 and they get some chart data with your exact age, height, and weight that corresponds to what they have your demographic data set as for the exact same time, it doesn’t take a genius to figure out who “Person McPersonface” is in their “anonymized” records.