De-identification
Patient identifiers are removed from DICOM metadata, including free-text fields and nested sequences, before anything reaches the image archive. De-identification runs in the DICOM worker, after validation and before ingest into Orthanc.
Pipeline
Section titled “Pipeline”- Upload: single DICOM files or a ZIP archive.
- Validate: files are checked before processing.
- De-identify: identifiers are removed from the metadata.
- Store: the de-identified study is ingested into Orthanc.
What is removed
Section titled “What is removed”- Patient identifiers in standard DICOM attributes
- Identifiers in free-text fields
- Identifiers inside nested sequences
TODO: list the exact attributes and the action taken for each (remove, replace with pseudonym, keep).
Identity modes
Section titled “Identity modes”- Clinics can keep real identities in a separate application database.
- Research teams can run on pseudonyms only.