-
Type:
Change Request
-
Resolution: Persuasive with Modification
-
Priority:
Highest
-
US Da Vinci CDex (FHIR)
-
current
-
Patient Care
-
Specification [deprecated]
-
-
Enhancement
-
Compatible, substantive
At a minimum, CDex IG must address the need for queries to specify the level of confidentiality protection assigned to the requested Resource by whatever means available, e.g., following the OASIS XSPA SAML IG, out-of-band communications, a trust agreement, or by pre-adopting the SMART Fine Grain Access approach for conveying a confidentiality code, which has yet to be balloted.
Existing Wording:
No existing wording.
Proposed Wording:
The details of how to convey the level of confidentiality protection required to be afforded the information being queried using OAuth is an area of active discussion.
Once a suitable approach has been agreed upon and published, it will be referenced in a future version of this guide.
Until that time, a CDex query requester should consult with legal counsel on how to convey the requester's intent to access confidential information by whatever means available, e.g., following the OASIS XSPA SAML IG, out-of-band communications, a trust agreement, or by pre-adopting the yet to be balloted SMART Fine Grain Access approach for conveying confidentiality in conformance with the HL7 Privacy and Security Healthcare Classification System.
(Comment 66 - imported by: Jean Duteau)
- is voted on by
-
BALLOT-15223 Negative - Vannak Kann : 2021-Jan-FHIR IG CDex R1 STU
- Balloted