| CPC G16H 10/60 (2018.01) [G06F 21/32 (2013.01); H04L 9/3231 (2013.01); H04L 9/3239 (2013.01)] | 19 Claims |

|
1. A point of interaction (POI) device, comprising:
a processor programmed to:
access electronic medical record (EMR) data relating to a user, wherein the EMR data is tokenized or encrypted;
transmit, to a health data interchange server, a request to route the tokenized or encrypted EMR data to a recipient, wherein the EMR data is routed based on one or more routing rules that specify one or more parameters that identify one or more recipients that can send or access the tokenized or encrypted EMR data over a network via the health data interchange server, wherein the one or more recipients are restricted to enrollees of the health data interchange server to improve routing security, wherein the routing rule comprises an assay-defined rule that defines send or access control based on a type of assay in the tokenized or encrypted EMR data, wherein results from a first type of assay that is included in the tokenized or encrypted EMR data are identified, and wherein the tokenized or encrypted EMR data is routed to the one or more recipients based on the first type of assay based on the routing rule;
retrieve identity data from a chip device of the user, wherein the identity data comprises a previously generated biometric hash of the user;
obtain biometric identity data from the user;
generate a biometric hash of the user based on the biometric identity data;
compare the biometric hash and the previously generated biometric hash retrieved from the chip device;
authenticate the user based on the comparison to confirm that the user is associated with the chip device based on the identity data; and
transmit, responsive to the authentication, the EMR data to the chip device for storage at the chip device.
|