VerbatimParliament, as it happens

NHS: Databases

Asked by Martin WrigleyLiberal DemocratDepartment of Health and Social CareTabled Answered 28 May 2026UIN 2305

The question

To ask the Secretary of State for Health and Social Care, pursuant to the Answer of 17 November 2025 to Question 88027, to introduce safeguards to govern access to identifiable patient data by non-NHS personnel within the Federated Data Platform.

Answered by Preet Kaur Gill

Safeguards are already in place governing access to identifiable patient data and non-National Health Service personnel within the NHS Federated Data Platform (NHS FDP).

The NHS has strict policies in place for managing access to patient data and carries out regular audits to ensure compliance, including monitoring the work of engineers helping to set up the central data collection platform (NDIT) that will track NHS performance and help improve care for patients. Anyone requiring administrative access to NDIT must have government security clearance and be approved by a member of NHS England staff at director level or above.

All staff are trained and fully aware of their responsibilities when accessing and using data to only use the minimum required for their purpose.

External suppliers are processors on contracts with relevant security and data protection clauses contained within the agreements. Internal security and data protection processes are in place within NHS England, contracts of employment and other organisational policies provide further safeguards against data misuse.

Verbatim has judged this answer against the question that was actually asked — answered, partly answered, or evaded. Sign in to see the verdict →

Open this question in Verbatim →

Every written question, searchable

155,000 questions tabled since the election, with the answer each department gave — and the ones still unanswered, with the clock running. Free to search.

Search written questions →Read on Verbatim