SpecsModelExplore
Overview
Actors
External Systems
Clinical Data Product
Clinical Ingestion
HL7 Gateway
FHIR Gateway
FHIR RouterSMART Auth FilterConsent Check
Mapping Service
Clinical Data
Analytics & Research
Clinical Apps
Governance & Audit
Consent Check
Behaviour
SpecsModelExplore
Consent Check
OverviewGuideLinks and Communications

Consent Check

The Consent Check calls the Policy Engine before any FHIR read returns PHI — including portal and partner traffic.

Consent withdrawals in the patient portal reload policy here on the next request; no gateway restart required.

Behaviour

  • Evaluates purpose of use (treatment, research, operations) against stored consent.
  • Denies with OperationOutcome when policy blocks the read.
  • Audited by Audit Service on both allow and deny.