
Hospital IT error wipes 11 years of maternity record viewing history
A significant IT operational error at English hospital trusts permanently removed about 11 years of viewing-history logs tied to maternity records. Clinical care data itself was recovered, but the audit trail showing who accessed records and when was not. For health systems, that distinction matters: treatment continuity can survive while accountability, investigations, and compliance evidence do not.
Why viewing history is not optional metadata
Viewing history underpins privacy audits, clinical governance, and responses to complaints or legal requests. When those logs vanish, organisations may still treat patients yet struggle to prove appropriate access controls. The incident underlines a practical rule: backups and recovery plans must cover operational and audit systems, not only the primary electronic medical record store.
Melbourne and wider Australian health providers face similar pressures as digital maternity and shared-care platforms expand across public hospitals and private clinics. Boards and CIOs should treat immutable or separately retained access logs as critical infrastructure, aligned with the Australian Privacy Principles and state health records obligations. Regular restore tests that include audit databases reduce the chance that a routine change window becomes a multi-year evidence gap.
For MultiViews Australia clients in health, aged care, and regulated professional services, the takeaway is operational: map dependencies between clinical apps, identity systems, and logging pipelines; enforce change controls with rollback paths; and document retention so “recovered care data” is never mistaken for a full recovery. Investing in verifiable audit continuity is less costly than explaining an irreversible history gap to patients, regulators, or insurers.







