Data boundary
No PHI, Limited Data Sets, patient-identifiable claims, clinical records, stable patient-derived identifiers, or unrestricted free-text uploads.
Security and data handling
Healthdex currently operates with public, licensed, synthetic, and approved aggregate provider-level evidence. The pilot does not accept patient-identifiable claims or clinical records.
No PHI, Limited Data Sets, patient-identifiable claims, clinical records, stable patient-derived identifiers, or unrestricted free-text uploads.
Administrator-provisioned accounts, tenant membership, role checks, forced password change, session expiration and revocation, and recorded security events.
CSRF protection on state-changing forms, fail-closed authentication, parameterized database access, restrictive session cookies, and security response headers.
Least-privilege MySQL and ClickHouse identities, migration tracking, audit retention, release verification, backup checks, and scheduled health monitoring.
MFA, SSO, SCIM, verified email, outbound email, and self-service password recovery are roadmap capabilities, not current pilot claims.
Make it concrete