scieee Open visual document viewer

Privacy in Mobile Health Applications for Breast Cancer Patients

Benjumea Mondéjar, Jaime; Dorronzoro Zubiete, Enrique; Ropero Rodríguez, Jorge; Rivera-Romero, Octavio; Carrasco Muñoz, Alejandro

Abstract

Privacy is a major concern for breast cancer patients. When patients use mobile health applications (mHealth apps), many sensitive data are handled by the application developers. General Data Protection Regulation (GDPR) arises as a solution to privacy issues. In this paper, we analyze the privacy policy of a sample of mHealth apps for breast cancer patients, developing a scale to check if GDPR is complied. Despite privacy is a key factor in the adoption of the use of mHealth apps, the low level of compliance with the GDPR of the analyzed applications was quite surprising. Thus, application developers must be concerned about this matter.

Full text

P i acy in Mobile Heal h Applica ions o B eas Cance Pa ien s Jaime Benjumea, En ique Do onzo o, Jo ge Rope o, Oc a io Ri e a-Rome o, Alejand o Ca asco Uni e sidad de Se illa Depa men o Elec onic Technology Se ille, Spain [email p o ec ed], [email p o ec ed], [email p o ec ed], [email p o ec ed], [email p o ec ed] Abs ac —P i acy is a majo conce n o b eas cance pa ien s. When pa ien s use mobile heal h applica ions (mHeal h apps), many sensi i e da a a e handled by he applica ion de elope s. Gene al Da a P o ec ion Regula ion (GDPR) a ises as a solu ion o p i acy issues. In his pape , we analyze he p i acy policy o a sample o mHeal h apps o b eas cance pa ien s, de eloping a scale o check i GDPR is complied. Despi e p i acy is a key ac o in he adop ion o he use o mHeal h apps, he low le el o compliance wi h he GDPR o he analyzed applica ions was qui e su p ising. Thus, applica ion de elope s mus be conce ned abou his ma e . Keywo ds: b eas cance , p i acy, GDPR; mHeal h; mobile applica ions. I. INTRODUCTION B eas cance (BC) is he mos common cance in women [1,2]. Nowadays, he ea ly BC de ec ion and ad ancemen s in ea men s ha e esul ed in an inc eased su i o ship [3- 5]. Howe e , BC su i o s li e wi h he e ec s o hose ea men s and possible complica ions [6], equi ing hem o be p oac i e in he ca e o hei heal h. They mus add ess medical and psychological conce ns and needs in he pos - ea men pe iod [7]. Technological solu ions may p o ide e ec i e ools o heal h educa ion, sel -moni o ing, communica ion, e c., suppo ing hem in he sel - managemen o hose su i o ship issues. Connec ed Heal h, whe e hese solu ions may be included, is a echnology-enabled heal hca e deli e y model aimed o maximize heal hca e esou ces [8]. Mobile Heal h (mHeal h), a subdomain o Connec ed Heal h, is de ined as he deli e y o heal hca e o heal h ela ed se ices using po able de ices [9]. Among po able de ices, sma phones a e pa icula ly in e es ing due o hei inc eased global use, ubiqui y, high cos -e ec i eness, and capabili ies, such as acking use s’ beha io s and p o iding hem eal- ime eedback. The use o mobile heal h applica ions (mHeal h apps) o heal h and well-being p omo ion has inc eased apidly in ecen yea s [10]. In he case o BC, Giun i e al. e iewed BC mHeal h apps a ailable in he leading sma phones app s o es (Apple S o e and Google Play) inding 454 mHeal h apps in ended o pa ien s [11]. 114 o hose mHeal h apps we e ocused on disease managemen . Common ea u es included in hose BC mHeal h apps o disease managemen such as ac i i y acking, heal h dia ies, o pa ien epo ed ou comes, equi e pa ien o en e da a in o he app. Some o hose mHeal h apps e en allow pa ien s o sha e hei da a wi h o he s. Mos o BC pa ien s a e willing o sha e hei da a wi h a heal hca e eam, bu hey may be eluc an o sha e hem wi h o he s [12-14]. Da a p i acy is a common conce n among pa ien s ega ding he use o mHeal h apps o sel -manage hei heal h [15, 16]. P i acy and secu i y o use in o ma ion con ained in he mHeal h apps has been epo ed as a ele an issue in he e alua ion o hei sa e y and quali y [17]. In his pape , we assess he p i acy policies o a sample o BC mHeal h apps. Wi h his aim, we in oduce a no el scale o assessing p i acy. The scale is based on he Gene al Da a P o ec ion Regula ion (GDPR), applicable since 2018 ac oss he Eu opean Union (EU). Ou scale de ines a sco e o e e y mHeal h app based on se e al GDPR i ems ha mus be complied. We analyzed a sample o 9 mHeal h apps o BC sel -managemen , applying ou no el p i acy assessmen scale. The pape is o ganized as ollows. Sec ion 2 deals wi h he legal and echnical backg ound. Legal backg ound includes some GDPR ea u es and de ini ions ha a e use ul o ou esea ch. Resea ch backg ound p esen s a b ie desc ip ion o ela ed wo k p e iously published in bo h gene al and eHeal h p i acy policy assessmen s. Sec ion 3 desc ibes he p i acy scale designed based on i s p i acy policy and we de ine he sc eening me hod o selec ion o he BC mHeal h apps. In Sec ion 4, we show he main esul s o ou s udy. Finally, Sec ion 5 shows ou main conclusions abou he analysis. II. BACKGROUND A. Legal backg ound Regula ion 2016/679 o he Eu opean Pa liamen and o he Council, also known as Gene al Da a P o ec ion Regula ion (GDPR) [18], was published in he O icial Jou nal o he Eu opean Union on 27 Ap il 2016. GDPR is applicable o all membe s a es since 25 May 2018. GDPR ha monizes he legisla ion ac oss he whole Eu opean Union. I is an 88-page documen and con ains 99 a icles. Some o he mos impo an ea u es a e he ollowing: •Ha moniza ion: I applies o all Membe S a es di ec ly, wi hou needing o be ansla ed i in o a na ional law. •I applies o all he es ablishmen s in he EU, con olle s o p ocesso s – see de ini ions below -, e en i p ocessing occu s ou side he EU. (A icle 3.1). •I applies o EU people’s da a, e en i he con olle o p ocesso is no om he EU, bu i o e s goods o se ices o people in he EU (A icle 3.2) o i moni o s use s’ beha io s. •Accoun abili y: he con olle shall be esponsible o he compliance wi h GDPR. GDPR allows a con olle o adhe e o codes o conduc o ce i ica ion, so ha he compliance can be easily e i ied. (A icle 5.2) •Coe cion: Coe ci e measu es a e s onge . A supe iso y au ho i y may ine he con olle wi h up o 20,000,000 EUR. Also, a supe iso y au ho i y may adop p o isional measu es in case he e is an u gen need o ac o p o ec da a subjec s’ igh s. (A icles 83 and 66) Mo eo e , GDPR de ines some impo an concep s o egula ion. Mos de ini ions can be ound in a icle 4, excep o he wise indica ed. We a e using he ollowing in his pape : •Da a subjec : iden i ied o iden i iable na u al pe son whose pe sonal da a a e being p ocessed. Any da a ha makes someone iden i ied o iden i iable is pe sonal da a, acco ding o GDPR. •Con olle : “ he na u al o legal pe son, public au ho i y, agency o o he body which de e mines he pu poses and means o he p ocessing o pe sonal da a” •P ocesso : “a na u al o legal pe son, public au ho i y, agency o o he body which p ocesses pe sonal da a on behal o he con olle ” •Recipien : is o whom pe sonal da a a e eleased. This includes p ocesso s. •Thi d pa y: is someone di e en om he da a subjec , con olle o p ocesso who is au ho ized o p ocess pe sonal da a. •Rep esen a i e: a na u al o legal pe son designa ed by a con olle o p ocesso , no es ablished wi hin he EU. •Da a P o ec ion O ice (DPO): is a pe son ha mus be designa ed unde some ci cums ances (A icle 37). Wi hin i s du ies, DPO ad ise he con olle o he p ocesso , and moni o compliance wi h GDPR. (A icle 39). B. Resea ch backg ound The assessmen o p i acy policies has been a big conce n in ecen yea s in he heal h domain, pa icula ly in mHeal h due o i s apid g ow h. Con issa e al. [19] p esen a GDPR-based me hodology o assess p i acy policies. This me hodology checks i a p i acy policy includes all he in o ma ion equi ed by he a icles 13 and 14 o he GDPR, i i is ai , and i i can be easily unde s ood. The pape assesses 14 online pla o ms using his me hodology and ies o au oma e he assessmen . Howe e , hey do no de elop a scale. GDPR’s equi emen s and ecommenda ions om he In o ma ion Commissione ’s O ice o Uni ed Kingdom a e used by [20] o design a p i acy policy based on icons and highligh ed ex (called “GDPR label”). Thei pu pose is o compa e a ex -only GDPR wi h a GDPR label e sion. The labels cap u e all he in o ma ion ha is equi ed o be included in p i acy policies. This su ey sugges s ha GDPR label e sion is p e e ed o ex -only e sion. Machine lea ning and na u al language p ocessing echniques a e used in [21] o classi y p i acy policies. They use di e en GDPR a icles o build a lis o i ems o be assessed. A le el o isk is associa ed o each i em, depending on how a p i acy aspec is add essed by he p i acy policy. They ha e de eloped an applica ion ha ecei es a p i acy policy as an inpu and hen summa ize his policy using a g aphical use in e ace, so ha use s can easily iden i y po en ial isks in he p i acy policy. Renaud and Shephe d [22] make an exhaus i e s a e-o - he-a esea ch and a syn hesis o GDPR equi emen s o p o ide a guide o w i e p i acy policies. They ocus on usabili y. The a icles abo e a e e e ed o gene al p i acy. Howe e , p i acy is especially impo an in he mHeal h con ex . Some p i acy pape s ocused on mHeal h a e discussed below. A heu is ic assessmen app oach is p oposed in [23] o assess mHeal h applica ions o sel - acking. They use di e en sou ces (such as GDPR o usabili y) o build a lis o 26 heu is ics in ou ca ego ies (no ice o awa eness; choice o consen ; access o pa icipa ion; and social disclosu e usabili y). Then hey analyze 64 sel - acking applica ions o check i hey comply wi h hei heu is ics. They de elop a sco ing me hod, bu hey a e no exclusi ely based on GDPR as a sou ce o he heu is ics. On he o he hand, [24] assess p i acy isks on 79 applica ions ce i ied as sa e by he UK Na ional Heal h Sys em. Unlike o he assessmen s, hey enume a e a se ies o opics o p i acy policies, based on In o ma ion Commissione ’s O ice o Uni ed Kingdom and he Da a P i acy Ac o 1998 ( epealed nowadays). Then hey analyze i e e y opic has been add essed o no in he p i acy policy o he assessed applica ions. An analysis o he 600 mos used mHeal h applica ions as o May 2013 is p esen ed in [25]. I shows ha only 30% o he applica ions had a p i acy policy on ha da e. They also analyze he a e age leng h o he p i acy policies and assess he anspa ency o he p i acy policies based in i ems conside ed mos impo an by use s. A compa ison o diabe es and men al heal h Indian applica ions is p esen ed in [26]. They use eadabili y es s and o he eadabili y me ics (such as wo d coun and wo ds pe sen ence) o conclude he e is no signi ica i e di e ence be ween he wo ypes o applica ions. III. METHODOLOGY A. P i acy scale design Analyzing p i acy in mobile applica ions is no a simple ask. The e a e many ac o s ha a ec p i acy. Some o hem can be analyzed by audi ing he app i sel , while o he s equi e audi ing he applica ion’s p o ide ( o example, o check i i s in e nal p ocedu es comply wi h GDPR). In he one hand, audi ing he applica ion includes analyzing secu i y measu es o e i y i he applica ion con ains any known ulne abili y o checking i he eques ed da a a e necessa y o he pu pose o he applica ion. On he o he hand, audi ing he applica ion’s p o ide is ela ed wi h he concep o accoun abili y desc ibed abo e. Thus, he con olle mus implemen a secu i y policy in o de o p o ec pe sonal da a, mus deploy a p i acy policy, mus keep eco ds o p ocessing ac i i ies and, when necessa y, mus ca y ou a da a p o ec ion impac assessmen be o e p ocessing da a. In his pape we ocus on he documen ha desc ibes he p i acy policy since i is he i s poin o con ac be ween he use (known as ‘da a subjec ’ in he GDPR) and he applica ion p o ide . P i acy policy is one o he pilla s o p i acy. This way, GDPR pu s emphasis on he p i acy policy and he in o ma ion ha mus be p o ided o he da a subjec , when p ocessing pe sonal da a. Ou objec i e in his pape is o analyze any p i acy policy in a sys ema ic way so ha we can ob ain a sco e o assess he quali y o p i acy. A icle 13 o GDPR es ablishes he kind o in o ma ion ha mus be p o ided o he da a subjec i he app collec s da a om him/he . Mo eo e , pe sonal da a mus be p ocessed in a anspa en manne , acco ding o a icle 5. The e o e, i is essen ial o e i y ha in o ma ion gi en is cohe en wi h he obliga ion o anspa ency. We also conside he ecommenda ions o he Spanish supe iso y au ho i y on p i acy policies [27, 28]. This way, we de ine a scale ha builds a p i acy sco e based on some o he ea u es o he applica ion p i acy policy. The conside ed i ems and he sco e o all o hem a e he ollowing: •Iden i y o he da a con olle : 0 poin s i he iden i y is omi ed, 0.5 poin s i only pa ial in o ma ion is gi en and 1 poin i ull da a is p o ided (including name o he da a con olle , pos al add ess and elec onic add ess). •Iden i y o he ep esen a i e when he con olle is ou side he EU. 0 poin s i no ep esen a i e is iden i ied and 1 poin i i is. This i em is no applicable (N/A) i he da a con olle is inside he EU. •Con ac de ails o he DPO: 0 poin s i no in o ma ion is p o ided and 1 poin i con ac in o ma ion is p o ided. In la ge scale mHeal h applica ions, we mus be awa e o a icle 37 o GDPR, as i manda es ha a DPO mus be designa ed in his case. •Pu poses o he p ocessing: 0 poin s i no pu pose is p o ided, 0.5 poin s i he in o ma ion p o ided is oo gene ic and 1 poin i speci ic in o ma ion is gi en. •Legal basis o he p ocessing: Possible legal bases a e enume a ed in a icle 6 o GDPR. 0 p s i no legal bases a e p o ided, 1 poin i hey a e. •Legi ima e in e es s: i he p ocessing is based on legi ima e in e es om he con olle . 0 poin s i no in o ma ion is p o ided, 1 poin i i is. This i em does no apply (N/A) i he legal bases o he p ocessing a e di e en om legi ima e in e es . •The ecipien s o ca ego ies o ecipien s o he pe sonal da a: 0 poin s i he ecipien s a e no p o ided, 1 poin i hey a e. We conside ha his in o ma ion mus be gi en e en i he e a e no ecipien s o he collec ed da a. •T ans e s o pe sonal da a o a hi d coun y (ou side he Eu opean Union): 0 poin s i no in o ma ion is p o ided, 0.5 poin s i he in o ma ion p o ided is oo gene ic, and 1 poin i speci ic in o ma ion is gi en ( o example, i ecipien holds a ecognized ce i ica ion such as P i acy Shield [29]). We conside ha his in o ma ion mus be gi en e en i he e a e no ans e s. •Da a s o age pe iod: 0 poin s i no in o ma ion is p o ided, 0.5 poin s i he in o ma ion p o ided is oo gene ic and 1 poin i he pe iod is gi en o , a leas , he c i e ia o de e mine ha pe iod. •Exis ence o da a subjec ’s igh s: 0 poin s i no igh s a e poin ed ou , 0.5 poin s i he in o ma ion p o ided is oo gene ic and 1 poin i speci ic igh s and a me hod o exe cise hese igh s a e enume a ed. •Exis ence o he igh o wi hd aw consen a any ime: 0 poin s i no in o ma ion is p o ided and 1 poin i i is. This i em does no apply (N/A) i da a subjec ’s consen is no a legal base o p ocessing. •Righ o lodge a complain wi h a supe iso y au ho i y: 0 poin s i no in o ma ion is p o ided, 0.5 poin s i in o ma ion p o ided is oo gene ic and 1 poin i speci ic in o ma ion is gi en (such as he con ac o he supe iso y au ho i y). •Obliga ion o p o iding da a: whe he he p o ision o pe sonal da a is a con ac ual equi emen , o a equi emen necessa y o en e in o a con ac . This i em also conside s whe he he da a subjec is obliged o p o ide he pe sonal da a and he possible consequences o ailing o p o ide such da a. 0 poin s i no in o ma ion is p o ided, 1 poin i i is. •Exis ence o au oma ed decision-making, including p o iling: 0 poin s i no in o ma ion is p o ided, 0.5 poin i in o ma ion p o ided is oo gene ic, 1 poin i speci ic in o ma ion abou he logic used and he possible consequences o he da a subjec is p o ided. Also 1 poin i he e is no p o iling and i is men ioned. Table I shows a summa y o all he de ined i ems. We also include an i em numbe o u u e e e ences in his pape . TABLE I. ITEMS IN THE PRIVACY ASSESSMENT I em I em No. Sco e Iden i y o da a con olle 1 0: no in o; 0.5: pa ial; 1: ull Iden i y o he ep esen a i e 2 0: no in o; 1: In o p o ided; N/A: no applicable DPO de ails 3 0: no in o ; 1: In o p o ided Pu poses o he p ocessing 4 0: no in o; 0.5: gene ic; 1: speci ic Legal basis o he p ocessing 5 0: no in o; 1: In o p o ided Legi ima e in e es s om con olle 6 0: no in o; 1: in o p o ided; N/A: no applicable Recipien s (o ca ego ies) o he pe sonal da a 7 0: no in o; 1: in o p o ided In e na ional ans e s o da a 8 0: no in o; 0.5: gene ic; 1: ull de ails o no in e na ional ans e s Pe iod o which da a will be s o ed 9 0: no in o; 0.5: gene ic; 1: speci ic Exis ence o da a subjec ’s igh s 10 0: no in o; 0.5: gene ic; 1: ull Exis ence o igh o wi hd aw consen 11 0: no in o; 1: in o p o ided; N/A: no applicable Righ o lodge a complain wi h a supe iso y au ho i y 12 0: no in o; 0.5: gene ic; 1: speci ic Obliga ion o p o ide pe sonal da a 13 0: no in o; 1: in o p o ided Exis ence o au oma ed decision- making o p o iling 14 0: no in o; 0.5: gene ic; 1: speci ic o no p o illing/au oma ed decision done B. Me hods A sys ema ic sea ch was ca ied ou on 30 h Janua y 2019, in he Spanish e sion o he wo leading mobile app s o es: Apple S o e and Google Play. All ele an mHeal h apps o BC we e iden i ied using he keywo ds “b eas cance ”. Fi s ly, duplica es we e emo ed. Fo hose apps de eloped o bo h ope a ing sys ems, iOS and And oid, only And oid e sion was selec ed. Ti les and desc ip ions o he esul ing mHeal h apps we e e iewed and assessed o eligibili y agains he selec ion c i e ia. Inclusion c i e ia: •App is in ended o BC pa ien s •App is ocused exclusi ely on BC •App con ains use in o ma ion o allows use o sha e hei opinions/da a Exclusion c i e ia: •Desc ip ion is no w i en in English •P i acy policy is no w i en in English no in Spanish i a ailable •App is no ocused on BC •App is ocused on cance in gene al, al hough BC is men ioned in he s o e desc ip ion. •App is no ocused on BC sel -managemen o suppo •Apps in ended o o he s han BC pa ien s IV. RESULTS App s o es sea ches esul ed in 154 mHeal h apps bo h in Apple S o e (24.7%; n=38) and Google Play (75.3%; n=116). A e emo ing duplica es, i les and desc ip ions o 148 mHeal h apps we e assessed o eligibili y by wo esea che s. Disc epancies we e esol ed by consensus. Finally, 10 mHeal h apps me he selec ion c i e ia. One o hem was excluded due o no being eely a ailable. The emaining 9 mHeal h apps we e downloaded o assess he p i acy policy applying he p oposed scale. Ano he one was excluded a e ins alling i due o ailu e in he equi ed egis e p ocess. Table II shows he selec ed applica ions conside ing he inclusion/exclusion c i e ia. Fo con enience when analyzing he esul s, applica ions we e agged om app1 o app8. TABLE II. S ELECTED APPLICATIONS App name De elope Ope a ing Sys em Label Becca – Suppo and Guidance B eas Cance Ca e And oid App1 My B eas Cance Coach Genomic Heal h, Inc. And oid App2 B eas Cance Suppo MyHeal hTeams And oid App3 OWise B eas Cance Px Heal hCa e B.V. And oid App4 Booby app – The B eas Cance App Booby app And oid App5 B eas Cance Manage @Poin o Ca e iOS App6 B eas Cance Ally The Uni e si y o Michigan iOS App7 B eas Cance Su i o Po able Medical Technology iOS App8 To ob ain he p i acy policies o he applica ions, we i s downloaded hem using he link p o ided in he applica ion page in he co esponding applica ion s o e (Google Play o App S o e om Apple). I no link was p o ided, we looked o a p i acy link in he de elope ’s web. Then, we ins alled he applica ions in a sma phone, used i , and checked i he p i acy policy was he same as he one shown in he de elope ’s websi e. Mos o applica ions (5 ou o 8) did no p esen any p oblem wi h hei p i acy policies. Howe e , app1 p i acy policy in he applica ion s o e was di e en om he one a ailable when using he applica ion. Thus, he la e was analyzed. In addi ion, we we e no able o use app7 because i asked o a PIN om a doc o o hospi al. In his case, we ha e used he policy a ailable in he de elope ’s web page. Finally, app8 does no ha e an a ailable p i acy policy, nei he in he de elope ’s web (p i acy policy is applied o all he se ices p o ided by he de elope ) no in he app i sel . Thus, we decided no o conside his applica ion. Some bad in en ion was obse ed in some o he applica ions. App3 p i acy policy is ambiguous abou he pe sonal da a ha hey p ocess. Thei de elope s claim ha hey do no collec use -speci ic iden i ying in o ma ion, jus o say a e wa ds o whom hey do sha e pe sonal in o ma ion. Mo eo e , app5 de elope s claim ha hey do no hold any pe sonal iden i iable da a, bu hey allow s o ing pho os and audio, which migh be used o iden i y people. Besides, hey decla e ha hey comply wi h GDPR, wha is illogical wi h no p ocessing pe sonal da a. Table III shows he sco es ob ained a e assessing he p i acy policies o he 7 apps. We de ined a pe cen ual sco e. A sco e o 100 means a o al accomplishmen o GDPR. I an i em is no applicable, i is no conside ed in he inal sco e. TABLE III. P RIVACY SCORES App name Label Ope a ing Sys em Sco e Becca – Suppo and Guidance App1 And oid 57.7 My B eas Cance Coach App2 And oid 25.0 B eas Cance Suppo App3 And oid 78.6 OWise B eas Cance App4 And oid 31.8 Booby app – The B eas Cance App App5 And oid 29.2 B eas Cance Manage App6 iOS 71.4 B eas Cance Ally App7 iOS 34.6 The i s issue we no ice is he low le el o compliance wi h he GDPR in gene al. Only 3 ou o 7 p i acy policies sco e a 50% o highe . The highes sco e eaches 78.4% and he lowes one only sco es 25.0%. All p i acy policies gi e ull o pa ial in o ma ion abou he iden i y o he da a con olle and do speci y he ca ego ies o ecipien s o pe sonal da a (I ems 1 and 7). We conside ha his is posi i e aspec . In addi ion, all applica ions excep one explain he pu poses o he p ocessing (I em 4). This con as s wi h he ac ha none o he 5 applica ions whose da a con olle is ou side he EU iden i ies a ep esen a i e (I em 2). No in o ming abou he iden i y o he ep esen a i e is conside ed a se ious in ingemen unde he Spanish da a-p o ec ion law [30]. Al hough he Da a P o ec ion O ice (DPO) is compulso y when p ocessing special ca ego ies o da a a la ge scale (such as da a conce ning heal h), only 2 applica ions ha e designa ed a DPO (I em 3). P i acy policies do no in o m p ope ly abou use ’s igh s, such as he igh s o access, co ec o dele e in o ma ion (I em10). Only 3 o he applica ions gi e enough in o ma ion abou use ’s igh s, 1 o hem gi es only pa ial in o ma ion and 3 o he policies do no e en men ion hese igh s. Fu he mo e, only 3 apps men ion he da a subjec ’s igh o lodge a complain wi h a supe iso y au ho i y (I em 12). Mo eo e , hey do no de ail some aspec s, such as how o ind con ac in o ma ion o he supe iso y au ho i y. P i acy policies also su e om lack o in o ma ion ega ding he exis ence o no o p o iling echniques. Only 3 policies in o m use s abou he exis ence o p o iling, bu hey do no gi e much in o ma ion abou he p ocess, ega dless GDPR s a emen s (I em 14). Besides, 4 o he policies gi e some in o ma ion abou how long pe sonal da a will be s o ed (I em 9). 3 o he policies do no poin ou he legal basis o he p ocessing (I em 5). I em 5 is impo an , since ha ing a legal basis o he p ocessing is he i s i em ha should be accomplished, and no conside ing i is a e y nega i e aspec . Rega ding he in o ma ion abou ans e s o a hi d coun y, only 2 applica ions ully in o m use s abou he ans e s ou side he EU (I em 8). 2 o hem in o m abou he loca ion o he da a ea men bu do no desc ibe he measu es p esc ibed by GDPR. Finally, 3 applica ions do no poin ou whe e he da a a e s o ed. We did no ind any ele an conclusions o I ems 6 and 11. Table IV summa izes he esul s ha ha e been explained abo e. TABLE IV. A CCOMPLISHMENT OF GDPR ITEMS SUMMARY I em No. Full in o ma ion Pa ial in o ma ion No in o ma ion No applicable 1 5 2 0 0 2 0 0 5 2 3 2 0 5 0 4 5 1 1 0 5 4 0 3 0 6 2 0 1 4 7 7 0 0 0 8 2 2 3 0 9 2 2 3 0 10 3 1 3 0 11 3 0 1 3 12 0 3 4 0 13 1 0 6 0 14 0 3 4 0 V. CONCLUSIONS Since p i acy is one o he main conce ns o b eas cance (BC) pa ien s, i is impo an o analyze whe he mobile applica ions comply wi h he ecommenda ions o he au ho i ies. In his pape , we ha e analyzed he p i acy policy o 8 mobile applica ions o BC pa ien s o check i hey comply wi h he Gene al Da a P o ec ion Regula ion (GDPR). Wi h his aim, we designed a scale o assess some o he i ems ha mus be complied by he apps. Ou scale builds a p i acy sco e based on some o he ea u es o he applica ion p i acy policy. We de ined a pe cen ual sco e, whe e a 100-poin sco e means a o al accomplishmen o GDPR. The low le el o compliance wi h he GDPR was qui e su p ising, as only 3 ou o 7 p i acy policies eached a 50-poin sco e. As posi i e aspec s, all p i acy policies gi e ull o pa ial in o ma ion abou he da a con olle . Nea ly all o hem explain he pu poses o he p ocessing, and mos o hem speci y how long hey s o e he da a. As nega i e ea u es, only 2 apps ha e designed a Da a P o ec ion O ice , only 3 o hem in o m he use s abou all hei igh s, jus 3 o hem epo abou he exis ance o p o iling echniques, and ano he 3 do no poin ou whe e he da a a e s o ed. Legal bases a e also o en o go en. Fu he mo e, when he apps a e ou side he EU, none o hem iden i y a ep esen a i e in he EU, while only 2 ully in o m he use s abou he ans e s ou side he EU. Thus, we conclude ha he e is s ill a long way o he whole compliance o GDPR. App de elope s mus be conce ned abou his ma e . REFERENCES [1] Wo ld Heal h O ganiza ion. “Global S a us Repo on Noncommunicable Diseases 2014”, ISBN 9789241564854, 2014. [2] R.L. Siegel, K. D. Mille , and A. Jemal, “Cance s a is ics, 2016”. CA Cance J. Clin, ol. 66(1), 2016, pp. 7-30. [3] A. K. A ing on, L. Golds ein, L. K upe , C. Vi o, J. Yim, and S.L. Chen. “Li e expec ancy a e cu a i e-in en ea men o b eas cance : Impac on long- e m ollow-up ca e”. Am. Su g, ol. 80(6), 2014, pp- 604-609. [4] S.P. Leong, Z.-Z. Shen, T.-J. Liu, G. Aga wal, T. Tajima, N.-S. Paik, K.Sandelin, A. De ossis, H. Cody, and W.D. Foulkes. “Is b eas cance he same disease in Asian and Wes e n coun ies?”. Wo ld J. Su g, ol 34(10), 2010, pp. 2308-2324. [5] R. De Angelis, M. San , M. P. Coleman, e al., and EUROCARE-5 Wo king G oup, “Cance su i al in Eu ope 1999–2007 by coun y and age: esul s o EUROCARE-5—a popula ion-based s udy” Lance Oncol., ol. 15 (1), Jan. 2014, pp. 23-34. [6] J. Cho, S.-Y. Jung, J. E. Lee, E.-J. Shim, e al. “A Re iew o B eas Cance Su i o ship Issues om Su i o s’ Pe spec i es” J. B eas Cance , ol. 17 (3), Sep. 2014, p.189. [7] M.E. Hewi , A. Bamundo, R. Day, and C. Ha ey. “Pe spec i es on pos - ea - men cance ca e: quali a i e esea ch wi h su i o s, nu ses, and physicians”. J Clin Oncol, ol. 25, 2007, pp. 2270-3. [8] B. Caul ield, and S. Donnelly. “Wha is Connec ed Heal h and why will i change you p ac ice”, QJM, ol. 106(8), 2013, pp. 703-7. [9] R. Whi ake . “Issues in mHeal h: indings om key in o man in e iews”, J. Med. In e ne Res, ol. 14 (5), 2012, e129, a ailable a : h p://dx.doi.o g/10.2196/jmi .1989. Las consul ed: Feb ua y 2019 [10] W.T. Riley, D.E. Ri e a, A.A. A ienza, W. Nilsen, S.M. Allison, and R. Me mels ein. “Heal h beha io models in he age o mobile in e en ions: a e ou heo ies up o he ask?”. T ansl Beha Med, ol. 1, Ma ch 2011, pp. 53-71 [FREE Full ex ] [doi: 10.1007/s13142- 011-0021-7] [Medline: 21796270] [11] G. Giun i, D.H. Giun a, E. Guisado-Fe nandez, J.L. Bende , and L. Fe nandez-Luque. “A biopsy o B eas Cance mobile applica ions: s a e o he p ac ice e iew”. In e na ional Jou nal o Medical In o ma ics, ol. 110, 2018, pp. 1–9, a ailable a : h ps://doi.o g/10.1016/J.IJMEDINF.2017.10.022. Las consul ed: Feb ua y 2019 [12] S. M. Phillips, D. E. Con oy, S. K. Keadle, C. A. Pelleg ini, G. R. Lloyd, F. J. Penedo, and B. Sp ing. “B eas cance su i o s’ p e e ences o echnology-suppo ed exe cise in e en ions”. Suppo . ca e cance O . J. Mul ina l. Assoc. Suppo . Ca e Cance , May 2017. [13] N. H. Nguyen, N. T. Hadg a , M. M. Moo e, D. E. Rosenbe g, C. Lynch, M. M. Ree es, and B. M. Lynch. “A quali a i e e alua ion o b eas cance su i o s’ accep ance o and p e e ences o consume wea able echnology ac i i y acke s”, Suppo . Ca e Cance , ol. 25 (11), 2017, pp. 3375–3384. [14] N. Ribei o, L. Mo ei a, A. Ba os, A.M. Almeida, and F. San os- Sil a. “Guidelines o a cance p e en ion sma phone: A mixed- me hods s udy”, In e na ional Jou nal o medical In o ma ics, ol. 94 (1), Oc obe 2016, pp. 134-142. [15] M. C. Robe son, E. Tsai, E. J. Lyons, S. S ini asan, M. C. Swa z, M. L. Baum, and K. M. Basen-Engquis , “Mobile Heal h Physical Ac i i y In e en ion P e e ences in Cance Su i o s: A Quali a i e S udy,” JMIR mHeal h uHeal h, ol. 5, no. 1, p. e3, 2017. [16] G. Giun i, J. Kool, O. Ri e a Rome o, and E. Do onzo o Zubie e. “Explo ing he Speci ic Needs o Pe sons wi h Mul iple Scle osis o mHeal h Solu ions o Physical Ac i i y: Mixed-Me hods S udy”, JMIR mHeal h uHeal h, ol. 6 (2), Feb. 2018, e37. [17] S. R. S oyano , L. Hides, D. J. Ka anagh, O. Zelenko, D. Tjond onego o, and M. Mani. “Mobile app a ing scale: a new ool o assessing he quali y o heal h mobile apps.”, JMIR mHeal h uHeal h, ol. 3 (1), Ma . 2015, e27. [18] Eu opean Pa liamen and Council, “Regula ion (EU) 2016/679 o he Eu opean Pa liamen and o he Council o 27 Ap il 2016 on he p o ec ion o na u al pe sons wi h ega d o he p ocessing o pe sonal da a and on he ee mo emen o such da a, and epealing Di ec i e 95/46/EC (Gene al Da a P o ec ion Regula ion)”, EUR-Lex, a ailable a : h ps://eu -lex.eu opa.eu/eli/ eg/2016/679/2016-05-04. Las consul ed: Feb ua y 2019. [19] G. Con issa, K. Doc e , F. Lagioia, M. Lippi, H.-W. Mickli z, P. Palka, G. Sa o , and P. To oni. “Au oma ed p ocessing o p i acy policies unde he EU gene al da a p o ec ion egula ion”. 31s In e na ional Con e ence on Legal Knowledge and In o ma ion Sys ems, JURIX 2018, He Kas eelG oningen, Ne he lands, Volume 313, pp. 51-60, doi: 10.3233/978-1-61499-935-5-51. [20] G. Fox, C. Tonge, T. Lynn, and J. Mooney. “Communica ing compliance: De eloping a GDPR p i acy label”. 24 h Ame icas Con e ence on In o ma ion Sys ems 2018: Digi al Dis up ion, AMCIS 2018, Hya Regency New O leans, Uni ed S a es. [21] W.B. Tes ay, P. Ho mann, T. Nakamu a, S. Kiyomo o, and J. Se na, “P i acyguide: Towa ds an implemen a ion o he EU GDPR on in e ne p i acy policy e alua ion”, IWSPA 2018 - P oceedings o he 4 h ACM In e na ional Wo kshop on Secu i y and P i acy Analy ics, 2018, pp. 15-21, Tempe, Uni ed S a es, doi: 10.1145/3180445.3180447 [22] K. Renaud, and L.A. Shephe d. “How o make p i acy policies bo h GDPR-complian and usable”, 2018 In e na ional Con e ence on Cybe Si ua ional Awa eness, Da a Analy ics and Assessmen , 2018, A icle numbe 85514422018, Glasgow; Uni ed Kingdom, doi: 10.1109/Cybe SA.2018.8551442. [23] L. Hu on, BA. P ice, R. Kelly, C. McCo mick, AK. Banda a, T. Ha zakis, M. Meadows, and B. Nuseibeh, “Assessing he P i acy o mHeal h Apps o Sel -T acking: Heu is ic E alua ion App oach”, JMIR Mheal h Uheal h 2018;6(10):e185, doi: 10.2196/mheal h.9217. [24] K. Huck ale, J.T. P ie o, M. Tilney, P-J. Benghozi, and J. Ca . “Unadd essed p i acy isks in acc edi ed heal h and wellness apps: a c oss-sec ional sys ema ic assessmen ”, BMC Medicine201513:214, doi: 10.1186/s12916-015-0444-y. [25] A. Sunyae , T. Dehling, P.L. Taylo , KD. Mandl, “A ailabili y and quali y o mobile heal h app p i acy policies”, J Am Med In o m Assoc. 2015 Ap ;22(e1):e28-33, doi: 10.1136/amiajnl-2013-002605. [26] A. Powell, P. Singh, and J. To ous, “The Complexi y o Men al Heal h App P i acy Policies: A Po en ial Ba ie o P i acy”, JMIR Mheal h Uheal h 2018;6(7):e158, doi: 10.2196/mheal h.9871. [27] Spanish da a p o ec ion agency, “In o me sob e polí icas de p i acidad en In e ne . Adap ación al RGPD”, a ailable a : h ps://www.aepd.es/media/es udios/in o me-poli icas-de-p i acidad- adap acion-RGPD.pd . Las upda ed: Sep embe 2018. Las consul ed: Feb ua y 2019. [28] Spanish da a p o ec ion agency, “Decálogo pa a la adap ación al RGPD de las polí icas de p i acidad en In e ne ”, a ailable a : h ps://www.aepd.es/media/es udios/decalogo-poli icas-de- p i acidad-adap acion-RGPD.pd . Las upda ed: Sep embe 2018. Las consul ed: Feb ua y 2019. [29] Eu opean Comission, “Commission Implemen ing Decision (EU) 2016/1250 o 12 July 2016 pu suan o Di ec i e 95/46/EC o he Eu opean Pa liamen and o he Council on he adequacy o he p o ec ion p o ided by he EU-U.S. P i acy Shield (no i ied unde documen C(2016) 4176)”, a ailable a : h ps://eu - lex.eu opa.eu/eli/dec_impl/2016/1250/oj. Las upda ed: July 2016. Las consul ed: Feb ua y 2019. [30] Spanish O icial S a e Gaze e, “Ley o gánica de p o ección de da os y ga an ía de de echos digi ales”, a ailable a : h ps://www.boe.es/eli/es/lo/2018/12/05/3. Las upda ed: Sep embe 2018. Las consul ed: Feb ua y 2019.