Agent · helsodata-2025-327-73
EHDS artikel 73: Secure processing environment
Structural tree: the article's own paragraphs, verbatim.
CELEX 32025R0327 · 2026-08-31 · Weight 62 · minimal-risk
OpenOpen reading. No metering is planned for this class.
- What this page is
- Agent, EHDS artikel 73
- Checked against the official source
- 2026-08-31Current
- Responsible publisher
- ExploreWorld Legal, editorial deskLiability position
Short answer
What does EHDS Article 73 require, and what outcome does the rule tree give?
EHDS Article 73 is tested here by a deterministic rule tree of 14 rules, built from the article's own conditions. The tree reads your facts and names the outcome that applies, starting with Paragraph 1 applies, carrying paragraph citation, content hash and read date 2026-08-31 against CELEX 32025R0327. The outcome is a machine classification, not a compliance decision.
EHDS Article 73Checked against the publisher 2026-08-31Official text
- Paragraph 1 applies. 1. Health data access bodies shall provide access to electronic health data pursuant to a data permit only through a secure processing environment which is subject to technical and organisational measures and security and interoperability requirements. In particular, the secure processing environment shall comply with the following security measures:
- Paragraph 2 applies. (a)
- Paragraph 3 applies. the restriction of access to the secure processing environment to authorised natural persons listed in the data permit issued pursuant to Article 68;
A source reference, not legal advice.
Jurisdiction
The same agent, read through one country's lens.
Inputs
- in_scopeThe article applies to the situationboolean
- punktParagraph of the articleenum (1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14)
Rule tree
If: alla(in_scope = true, punkt = 1)
Paragraph 1 applies
1. Health data access bodies shall provide access to electronic health data pursuant to a data permit only through a secure processing environment which is subject to technical and organisational measures and security and interoperability requirements. In particular, the secure processing environment shall comply with the following security measures:
Paragraph 1
If: alla(in_scope = true, punkt = 2)
Paragraph 2 applies
(a)
Paragraph 2
If: alla(in_scope = true, punkt = 3)
Paragraph 3 applies
the restriction of access to the secure processing environment to authorised natural persons listed in the data permit issued pursuant to Article 68;
Paragraph 3
If: alla(in_scope = true, punkt = 4)
Paragraph 4 applies
(b)
Paragraph 4
If: alla(in_scope = true, punkt = 5)
Paragraph 5 applies
the minimisation of the risk of the unauthorised reading, copying, modification or removal of electronic health data hosted in the secure processing environment through state-of-the-art technical and organisational measures;
Paragraph 5
If: alla(in_scope = true, punkt = 6)
Paragraph 6 applies
(c)
Paragraph 6
If: alla(in_scope = true, punkt = 7)
Paragraph 7 applies
the limitation of the input of electronic health data and the inspection, modification or deletion of electronic health data hosted in the secure processing environment to a limited number of authorised identifiable individuals;
Paragraph 7
If: alla(in_scope = true, punkt = 8)
Paragraph 8 applies
(d)
Paragraph 8
If: alla(in_scope = true, punkt = 9)
Paragraph 9 applies
ensuring that health data users have access only to the electronic health data covered by their data permit, by means of individual and unique user identities and confidential access modes only;
Paragraph 9
If: alla(in_scope = true, punkt = 10)
Paragraph 10 applies
(e)
Paragraph 10
If: alla(in_scope = true, punkt = 11)
Paragraph 11 applies
the keeping of identifiable logs of access to and activities in the secure processing environment for the period necessary to verify and audit all processing operations in that environment; logs of access shall be kept for at least one year;
Paragraph 11
If: alla(in_scope = true, punkt = 12)
Paragraph 12 applies
(f)
Paragraph 12
If: alla(in_scope = true, punkt = 13)
Paragraph 13 applies
ensuring compliance and monitoring the security measures referred to in this paragraph to mitigate potential security threats.
Paragraph 13
If: alla(in_scope = true, punkt = 14)
Paragraph 14 applies
2. Health data access bodies shall ensure that electronic health data from health data holders in the format specified in the data permit can be uploaded by those health data holders and can be accessed by the health data user in a secure processing environment.
Paragraph 14
If no rule matches: The article is not stated to apply, or no paragraph is selected. The agent abstains rather than guesses.
The article text as read
- 11. Health data access bodies shall provide access to electronic health data pursuant to a data permit only through a secure processing environment which is subject to technical and organisational measures and security and interoperability requirements. In particular, the secure processing environment shall comply with the following security measures:
- 2(a)
- 3the restriction of access to the secure processing environment to authorised natural persons listed in the data permit issued pursuant to Article 68;
- 4(b)
- 5the minimisation of the risk of the unauthorised reading, copying, modification or removal of electronic health data hosted in the secure processing environment through state-of-the-art technical and organisational measures;
- 6(c)
- 7the limitation of the input of electronic health data and the inspection, modification or deletion of electronic health data hosted in the secure processing environment to a limited number of authorised identifiable individuals;
- 8(d)
- 9ensuring that health data users have access only to the electronic health data covered by their data permit, by means of individual and unique user identities and confidential access modes only;
- 10(e)
- 11the keeping of identifiable logs of access to and activities in the secure processing environment for the period necessary to verify and audit all processing operations in that environment; logs of access shall be kept for at least one year;
- 12(f)
- 13ensuring compliance and monitoring the security measures referred to in this paragraph to mitigate potential security threats.
- 142. Health data access bodies shall ensure that electronic health data from health data holders in the format specified in the data permit can be uploaded by those health data holders and can be accessed by the health data user in a secure processing environment.
Lineage
Interface
Hashes
Artefacts
No legal advice. Deterministisk regeluppslagning. Ingen juridisk rådgivning, inget efterlevnadsbeslut, ingen bedömning av ett enskilt ärende.
Citation: 32025R0327 art. 73, Secure processing environment. ExploreWorld Legal, https://legal.exploreworldai.com/agent/helsodata-2025-327/artikel-73 (hämtad 2026-08-31, bevis sha256:dc86aa5f532be96b, bygge legal-2026-08-25).