(edit: removed redundant rants and added updates)

I recently got diagnosed with a condition (sleep apnea) which means I need to use a machine (CPAP) to have a proper sleep, probably for the rest of my life. The doctor wanted me use the device for a few months, and bring the “report” generated by the device to monitor my progress and discuss further treatment.

I thought it would be a simple task, like using a program or accessing a local network service like a printer would and download a file. However, as I consulted to the device distributors in my area… their sales pitch (disregarding the actual medical functions) were:

A) The machine is constantly connected via wi-fi or cellular to manufacturer’s server, and user downloads the report via manufacturer’s website or an app.

B) The machine has an SD card slot to which data is copied, but user have to bring its contents to the authorized distributor so they can convert them into a report file.

TL;DR: Very unsatisfied with either options. I never asked for this.

Update #1: For the reports, there’s a program called OSCAR (www.sleepfiles.com/OSCAR/) that supports conversion of SD card data. Check device compatibility first. For sleep apnea related discussion, there is a forum (www.apneaboard.com) dedicated to it.

Update #2: From all the available brands, I’m inclined to buy a Chinese brand (Yuwell) simply because of costs alone, even if it is not supported by OSCAR. I see a lot of people recommending ResMed (which has OSCAR support) both online and offline, but the cost is prohibitively expensive for someone in my financial situation with local market prices. Still have to think about it.

Update #3: There’s an asshole in the comments arguing “what’s so special” about sleep related statistics being copied around. My concern was how those statistics get associated with customer identification (metadata) as distributors often do. Anyways, won’t waste my time with the “got nothing to hide” type of dumbfucks.

8 points

Is there no longer an option to use the machine without the report or connection to internet?

permalink
report
reply
9 points

Considering that, but the doctor needs the report so my condition can be treated in a proper way. I need to contact more distributors and see if there are any “customer privacy conscious” kind, but I’m not getting my hopes up.

permalink
report
parent
reply
12 points
*

I’m not familiar with the companies mentioned, but have you tried talking to the doctor or the clinic? They may be able to provide you with better guidance, or tell you about other machines that are compatible with your treatment plan. Even if they don’t know about the privacy aspect, that might give you a shorter list to follow up on.

My guess (or hope) is that this is the option that the average person finds convenient, which is why the doctor recommended it. There should be other options that the doctor / clinic knows about, especially because an IOT CPAP machine is a fairly new thing.

Doctors modify treatment plans fairly often, even for things like patient comfort, and bringing this concern to their attention could also change what they recommend to future patients.


Personal thoughts unrelated to your case: This is a growing concern with healthcare technology and I think we need more attention on the harms. “Your insurance company will use it against you” is something that most people will understand.

permalink
report
parent
reply
4 points

That’s right. I will email the doctor and ask if any other patients have expressed concerns about it.

permalink
report
parent
reply
-3 points

What would a hacker even do with it? They would… maybe know how often you stop breathing at night?

permalink
report
reply
-11 points
Removed by mod
permalink
report
parent
reply
-3 points
*
Removed by mod
permalink
report
parent
reply
5 points

Don’t you have better things to do instead of jerking each other off in a post you sure don’t even care about?

permalink
report
parent
reply
6 points

Also the idea of privacy while posting to a public forum. Er but by the grace of god go I.

Sure, dude. I’m soooo sorry because I’m asking questions about privacy on a privacy community.

permalink
report
parent
reply
5 points

The nature of his medical condition isn’t relevant here. It could be his blood pressure, heart beats, whatever that makes an insurance company charge a premium on that poor sucker.

permalink
report
parent
reply
0 points

It doesn’t log that data.

permalink
report
parent
reply
-5 points

CPAP machines only do one thing.

permalink
report
parent
reply
2 points

I get your message, but I was not referring to the machine. I was referring that the what kind of data logged by the machine didn’t matter in the context of privacy.

permalink
report
parent
reply
5 points

So what? I post concerns about user privacy on a privacy forum and this is what I get? A gatekeeping comment about how my concerns are overblown? Way to promote the platform.

permalink
report
parent
reply
-3 points

Ok. What privacy exactly are you concerned with?

permalink
report
parent
reply
31 points
Deleted by creator
permalink
report
reply
7 points

Too expensive. There’s an import tax I have to pay if I ordered anything abroad, and the devices price in general are high enough to hurt my wallets even more. Older brands can’t be acquired from stores, and “not supported” if I bought a used one, I was told.

permalink
report
parent
reply
15 points

Here’s something tangentially related that makes it difficult to find older options, the support. In the US a piece of medical device has to be supported for 7 years. My hospital has these bladder scanners that are in quite a few departments, regular fixture in hospitals (ultrasounds). Jan 1 2024 was when our came up on the 7 year mark. To do preventative maintenance calibration required logging on their server, guess what’s no longer accessible? So to stay in compliance all of us in the biomed department has to figure out how to get new ones to replace the 10 $11k each paperweights we have now.

permalink
report
reply
2 points

I found some older models around my area, but are all used and not very clear on what functions are still supported. I wish companies were more open about those things.

permalink
report
parent
reply
11 points

Well fuck I’m suddenly looking at my pacemaker and the little box that sends the messages to the doctor with much more suspicion now.

permalink
report
reply
9 points

As another has commented, medical devices (and especially pacemaker systems) are well regulated, such that misuse or illegal re-selling of patient health data is not worth it for most companies.

Cybersecurity is a big topic in the industry now and life-sustaining systems are scrutinised much more closely these days. I wouldnt be worried, but you can ask the company directly if you are still concerned.

permalink
report
parent
reply

Privacy

!privacy@lemmy.ml

Create post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

Community stats

  • 4.6K

    Monthly active users

  • 2.9K

    Posts

  • 77K

    Comments