cyberneticlibrary

Enforce HIPAA and GDPR data compliance

healthcare-phi-complianceskillsetup L20
Sheshiyer/skill-clusters
What it does

Implement PHI classification, access control, and audit

Best for

When you need to handle patient health information and must ensure HIPAA/DISHA/GDPR compliance.

Inputs
  • · Data schema
  • · User roles
  • · Jurisdiction (HIPAA/DISHA/GDPR)
Outputs
  • · Row-level security policies
  • · Insert-only audit table
  • · Data classification tags
Requires
  • · Database with RLS
  • · Audit system
Preconditions

PHI data identified; healthcare-core contract adopted

Failure modes
  • · Service role used for client queries (exposes all data)
  • · Audit trail edited or deleted
  • · PHI leaked in error logs
Trust signals
  • · Three-layer contract implemented
  • · Opaque UUIDs documented
  • · Compliance matrix covers US/India/EU jurisdictions