HL7 Electronic Health Record System Functional Model, Release 2.1.1
            
            2.1.1 - 
  
            
          
HL7 Electronic Health Record System Functional Model, Release 2.1.1, published by HL7 International / Electronic Health Records. This guide is not an authorized publication; it is the continuous build for version 2.1.1 built by the FHIR (HL7® FHIR® Standard) CI Build. This version is based on the current content of https://github.com/mvdzel/ehrsfm-fhir-r5/ and changes regularly. See the Directory of published versions
| Official URL: http://hl7.org/ehrs/uv/ehrsfmr2/Requirements/EHRSFMR2-RI.1.1.27.1 | Version: 2.1.1 | |||
| Standards status: Normative Active as of 2025-10-31 | Computable Name: RI_1_1_27_1_Evidence_of_Record_Entry_Decryption_Event | |||
Maintain Evidence of Record Entry Decryption Event
Maintain Evidence of Record Entry Decryption Event
Evidence of Record Entry Decryption Event includes key metadata, ensures health record integrity (and trust) and enables record audit.
| 
                
                 RI.1.1.27.1#01 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL audit each occurrence when Record Entry content is decrypted.  | 
        
| 
                
                 RI.1.1.27.1#02 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture identity of the organization where Record Entry content is decrypted.  | 
        
| 
                
                 RI.1.1.27.1#03 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture identity of the patient who is subject of decrypted Record Entry content.  | 
        
| 
                
                 RI.1.1.27.1#04 
                
             | 
            
                
                
                conditional
                
                
                 SHALL 
                
             | 
            
                
                 IF a user initiated a Record Entry content decryption, THEN the system SHALL capture identity of the user initiating Record Entry content decryption.  | 
        
| 
                
                 RI.1.1.27.1#05 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture identity of the system application which decrypted Record Entry content.  | 
        
| 
                
                 RI.1.1.27.1#06 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture the type of Record Event trigger (i.e., decryption).  | 
        
| 
                
                 RI.1.1.27.1#07 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture the date and time Record Entry content is decrypted.  | 
        
| 
                
                 RI.1.1.27.1#08 
                
             | 
            
                
                
                
                 SHOULD 
                
             | 
            
                
                 The system SHOULD capture identity of the location (i.e., network address) where Record Entry content is decrypted.  | 
        
| 
                
                 RI.1.1.27.1#09 
                
             | 
            
                
                
                conditional
                
                
                 MAY 
                
             | 
            
                
                 IF a user initiated a Record Entry decryption, THEN the system MAY capture the rationale for decrypting Record Entry content.  | 
        
| 
                
                 RI.1.1.27.1#10 
                
             | 
            
                
                
                
                 SHALL 
                
             | 
            
                
                 The system SHALL capture a sequence identifier for decrypted Record Entry content.  | 
        
| 
                
                 RI.1.1.27.1#11 
                
             | 
            
                
                
                
                 SHOULD 
                
             | 
            
                
                 The system SHOULD capture the identifier and version of decryption Tools used for each decrypted Record Entry.  | 
        
| 
                
                 RI.1.1.27.1#12 
                
             | 
            
                
                
                
                 SHOULD 
                
             | 
            
                
                 The system SHOULD capture a reference (e.g., link, pointer) to pre-decrypted data for each Record Entry decryption.  |