| ID | product.ingestion.fhir_gateway |
|---|---|
| Description | FHIR R4 REST endpoint with mTLS and consent enforcement. |
| Key | fhir_gateway |
| Type | microservice:service |
| Team | Clinical Ingestion |
| Owner | ingestion@healthcare.example |
| Status | active |
| Technologies | Java, HL7, FHIR |
| Attributes | auth: SMART-on-FHIR, standard: FHIR R4 |
| Tags |
The FHIR Gateway exposes a FHIR R4 REST surface for apps and partners. Every request passes SMART-on-FHIR authentication and consent checks before Clinical Data is queried.
No anonymous PHI
Unauthenticated or consent-violating requests are rejected here — Clinical Data never sees them.
Could not build diagram for model "example-healthcare".
The FHIR Router selects the handler for the resource type and interaction.
The SMART Auth Filter validates OAuth tokens and scopes.
The Consent Check asks the Policy Engine before reads proceed.
The gateway exposes Patient, Observation, Encounter and related interactions. The full OpenAPI contract is embedded on the Overview tab.
Contract
Search requests are paginated; _summary and _elements are honoured to keep portal payloads small.