Bottom line: AI-powered health tracking systems for infants and toddlers pose significant risks to sensitive personal data.
What's happening: The AI-powered health tracking system developed by Nanit and its rivals is being developed for use in 24/7 health monitoring, with some systems capable of detecting subtle changes in a baby's behavior as early as six months old. The system uses a combination of sensors and AI algorithms to track a baby's vital signs and detect potential health risks. The system can also collect sensitive personal data, including a baby's temperature, heart rate, and breathing information.
What to do: Security leaders should review their current data collection and storage practices to ensure that sensitive personal data is protected from unauthorized access and hacking. They should also consider implementing additional security measures, such as encryption and two-factor authentication, to further protect sensitive data. Furthermore, security leaders should ensure that their security protocols are aligned with the General Data Protection Regulation (GDPR) and the Health Insurance Portability and Accountability Act (HIPAA). Companies such as Nanit and Owlet should be held accountable for their data collection and storage practices, and security leaders should monitor their systems for potential vulnerabilities.