Data Sharing Controversy: Medicaid, ICE, and Palantir Involved in Sensitive Information Breach
Data sharing among government entities is always a delicate issue, especially when it involves sensitive personal information. Recent revelations have brought to light the improper handling of Medicaid data by federal agencies, sparking legal challenges and raising questions about privacy and data security.
In January, a significant breach occurred when Medicaid officials shared data about millions of individuals with U.S. Immigration and Customs Enforcement (ICE). This data was subsequently provided to the data analytics firm, Palantir, which operates an application used by ICE to pinpoint the addresses of noncitizens who might face deportation.
The situation has prompted legal action, as over 20 Democratic attorneys general filed a motion last Thursday, challenging the Trump administration’s data-sharing agreement between the Centers for Medicare and Medicaid Services (CMS) and ICE. The legal challenge stems from the improper transfer of data, which reportedly included sensitive details like home addresses and immigration status.
In December, U.S. District Judge Vince Chhabria ruled that health officials could share certain Medicaid data with ICE. This decision was temporarily halted in late May after it was revealed that CMS had shared more data with ICE than the court order had permitted. This included a dataset from Minnesota that contained U.S. citizens’ information, alongside millions of other individuals, some of whom were legally present in the country.
ICE was instructed to delete the improperly shared data, with a hearing scheduled for August to clarify further which data categories could be lawfully shared. Meanwhile, further admissions of improper data sharing have emerged. The Justice Department disclosed last week that CMS mistakenly reshared the dataset initially shared in January.
Alberto Briseno, a section chief for ICE’s Homeland Security Investigations, confirmed that ICE personnel deleted the file upon discovery, stressing that it was not used for enforcement purposes. However, a broader search found that several users still possessed the dataset, underscoring “technological difficulties” in ensuring all copies were deleted.
The Department of Justice is now requesting an expansion of the judge’s order to allow ICE broader access to data on noncitizens who are not legal permanent residents or citizens. However, the attorneys general argue that ICE’s inability to manage existing records should disqualify them from further access.
Palantir has yet to comment on whether it deleted the dataset after ICE shared it. Additionally, there has been no response from the Department of Homeland Security regarding their data transfer to Palantir. According to California Deputy Attorney General Anna Rich, federal officials indicated that shared data was deleted from a Microsoft Teams chat, but the attorneys general remain skeptical of these assurances.
In an earlier hearing, Judge Chhabria warned federal officials that continued improper sharing could disqualify them from using Medicaid data for deportation purposes, emphasizing the need for careful handling of such sensitive information.
This article was originally written by www.npr.org



