HL7 FHIR Implementation Guide: Data Access Policies
1.0.0-current - International flag

HL7 FHIR Implementation Guide: Data Access Policies, published by HL7 International / Security. This guide is not an authorized publication; it is the continuous build for version 1.0.0-current built by the FHIR (HL7® FHIR® Standard) CI Build. This version is based on the current content of https://github.com/HL7/data-access-policies/ and changes regularly. See the Directory of published versions

Example Permission:

Page standards status: Informative

Language: en

Security Label: test health data (Details: ActReason code HTEST = 'test health data')

status: Active

asserter: Organization nowhere

date: 2023-11-22

combining: Permit-unless-deny

rule

type: Permit

Data

-ResourceTypeSecurity
*All FHIR Types: Patient (Patient)local-tags: TAG_1 (TAG_1)

limit

element: Patient.address

limit

element: Patient.birthDate

limit

element: Patient.meta

rule

type: Deny

Data

-ResourceTypeSecurity
*All FHIR Types: Patient (Patient)local-tags: VIP (VIP)