That is to say if it’s a deep learning algorithm, a neural network, it only shares the last few layers, not the first layers, so that it can still do a federated training, but it will not reveal any raw data, and therefore not compromising the privacy guarantees that the clinics makes to the patients.

