Palantir’s NHS Data Access: A Crisis of Trust and Security
The Lead: A Breach of Trust in Public Health Data
MPs have issued a stark warning regarding the NHS's decision to grant Palantir access to identifiable patient data, deeming the move 'dangerous' and likely to erode public confidence in data privacy standards. The controversy centers on the company's ability to view raw, non-anonymized health records before they are processed, a practice that contradicts standard security protocols.
The Controversy: Access Before Pseudonymization
The core technical issue lies in the mechanism of access. Unlike standard protocols, NHS England has permitted contractors to view raw, identifiable patient records before they are anonymized. This bypasses a critical security layer, raising alarms about the potential for misuse or accidental exposure. The Federated Data Platform (FDP) was designed to integrate scattered datasets, but allowing 'unlimited access' to non-NHSE staff has triggered a significant security review.
The Financial and Political Stakes
The deal is valued at £330m, but the political cost is mounting. Rachael Maskell and Martin Wrigley have publicly condemned the project, while polling indicates that 40% of the UK public distrusts Palantir with sensitive health information, and two-thirds are generally concerned about the company's expanding public sector role. The company's history—supporting ICE immigration enforcement and military operations—clashes with the public's expectation of a healthcare provider.
The Expanding Role of Private Tech in Public Health
This incident is part of a broader pattern. Palantir is simultaneously negotiating with the Metropolitan Police for AI intelligence analysis. The 'cavalier attitude' cited by MPs suggests a systemic failure in 'security by design.' The Patients Association and campaign groups like Foxglove argue that patients never consented to having their data accessed by a company with a record in targeting people, not caring for them.
Future Outlook: Heightened Scrutiny and Regulatory Risk
Given the intense scrutiny from both backbench MPs and the public, the project faces an uncertain future. The government will likely face increasing pressure to either halt the access to identifiable data or implement significantly stricter, auditable safeguards to restore trust. The risk of a public backlash could force a re-evaluation of how private contractors are integrated into critical national infrastructure.