Palantir is turning the NHS into a tool for mass surveillance
What they're not telling you: Palantir Controls NHS Patient Data Access—With No Public Record of Authorization The UK's National Health Service has granted Palantir Technologies access to identifiable patient data through its Federated Data Platform without producing statutory documentation showing who authorized the access, when, or under what legal basis. The Science, Innovation and Technology Committee, a cross-party parliamentary body, issued its finding this week after reviewing the £330 million contract awarded to the US military contractor nearly three years ago. The Committee's report contains a direct demand to the government: disclose "the exact nature of Palantir's access to identifiable and non-identifiable patient data, on what statutory basis this was authorised, when, and by whom." No such documentation has been made public.
What the Documents Show
The absence itself is the institutional failure. Palantir's Federated Data Platform now operates as the NHS's primary operating system for linking previously separate databases across regional trusts and clinical services. According to available data, 69 percent of regional NHS Trusts have already adopted the platform. The system ingests patient records at scale—the exact volume and patient identifiers remain unspecified in public disclosures. Palantir holds the technical keys to NHS data architecture, meaning the company can determine what information flows where and to whom, regardless of NHS policy statements.
Follow the Money
The operational parallel is documented. Duncan McCann of the Good Law Project, quoted in the Committee's inquiry, explicitly referenced how Palantir's tools have enabled US Immigration and Customs Enforcement raids under the Trump administration's deportation programme. McCann stated: "We have already seen in the US how Palantir's reach into so many different areas of government has allowed it to build a system that provides detailed profiles of people." The Good Law Project is part of an unusually wide coalition—spanning parliamentary technologists, privacy advocates, and NHS administrators—calling for contract termination. What distinguishes this from routine government IT procurement is the data type and permanence. Healthcare records contain identifiers that cannot be revoked or anonymized retroactively. Once Palantir ingests NHS patient data, that data remains accessible to the contractor's systems and, by extension, to any government agency with sufficient political pressure or legal authority to request it.
What Else We Know
The Committee's report notes that three years post-award, the statutory basis remains absent from the public record. This is not a compliance gap—it is structural. The contract predates formal parliamentary scrutiny. Palantir was awarded the FDP contract during a period when pandemic emergency procurement rules permitted compressed approval timelines. The Committee's 2026 inquiry represents the first systematic demand for accountability documents. NHS England has not voluntarily published them.
Primary Sources
- Source: Hacker News
- Category: Surveillance State
- Cross-reference independently — don't take our word for it.
Disclosure: NewsAnarchist aggregates from public records, API feeds (Federal Register, CourtListener, MuckRock, Hacker News), and independent media. AI-assisted synthesis. Always verify primary sources linked above.