Privacy fundamentals · C0031
Can a hash on the ledger identify someone?
Designed, not yet built
Short answer
The design uses salted commitments with per-record salts kept off the ledger, because plain hashes of low-entropy data can be guessed. Destroying a salt breaks linkability.
This is designed, not built.
Status as of September 30, 2026. Version 0.2.0, synthetic data only. See what's built today. Not legal, medical or security advice.
Related answers
- Is patient data stored on the ledger? Designed
- Do registration staff see clinical charts? Pilot
- Do IT administrators see patient data? Designed
- Where is patient data stored? Designed
See it in context: The privacy model · Search the help center · Ask a question