Conclusions from The “Re-identification” of Governor William Weld’s Medical Information: A Critical Re-examination of Health Data Identification Risks and Privacy Protections, Then and Now, Daniel Barth-Jones, 2012.

What are our essential “lessons learned” from this critical examination of the seminal Weld reidentification attack?

I would propose the following: