NHS Rebuked Over Undisclosed Palantir Data Access
England’s data watchdog criticised an incomplete disclosure of Palantir personnel’s potential access to identifiable patient information.

A health-data programme can be technically controlled and still lose public trust if access is not explained clearly.
What happened
England’s National Data Guardian criticised NHS England for failing to disclose that Palantir personnel could access identifiable patient information through an administrative role before the data was pseudonymised.
That potential access was omitted from an earlier data-protection assessment. The issue concerns governance and transparency around access rather than a confirmed misuse of patient records.
Why it matters
Healthcare systems hold unusually sensitive information and often depend on outside technology vendors. Patients need to know who can see identifiable data, under what conditions and with what audit trail.
An incomplete assessment makes it harder for the public and oversight bodies to judge whether protections are adequate, even when contractual and technical controls exist.
The bigger picture
The success of national health-data platforms depends on legitimacy as much as software performance. Vendors and public bodies need narrow permissions, visible access logs and impact assessments that describe real operational access—not only the intended final architecture. Transparency failures can slow adoption across an entire programme.
