Boundaries¶
Overview¶
Patients have the most restrictive access model in the VitalBridge platform.
The platform enforces strict ownership rules to ensure patient privacy and healthcare data protection.
Resource Ownership Boundary¶
flowchart LR
PATIENT["Patient"]
OWN["Own Resources"]
OTHER["Other Patient Resources"]
PATIENT --> OWN
PATIENT -. Access Denied .-> OTHER
Patients may access only resources that belong to them.
Appointment Boundary¶
flowchart LR
PATIENT["Patient"]
OWN_APPT["Own Appointment"]
OTHER_APPT["Other Appointment"]
PATIENT --> OWN_APPT
PATIENT -. Access Denied .-> OTHER_APPT
Patients cannot access appointments belonging to other patients.
Consultation Boundary¶
flowchart LR
PATIENT["Patient"]
OWN_SESSION["Own Consultation"]
OTHER_SESSION["Other Consultation"]
PATIENT --> OWN_SESSION
PATIENT -. Access Denied .-> OTHER_SESSION
Access to consultations is restricted to participants of the appointment.
Tenant Boundary¶
flowchart LR
PATIENT["Patient"]
OWN_TENANT["Assigned Tenant"]
OTHER_TENANT["Other Tenant"]
PATIENT --> OWN_TENANT
PATIENT -. Access Denied .-> OTHER_TENANT
Patients may not access resources belonging to another tenant.
Administrative Boundary¶
flowchart LR
PATIENT["Patient"]
ADMIN["Tenant Administration"]
PLATFORM["Platform Administration"]
PATIENT -. Access Denied .-> ADMIN
PATIENT -. Access Denied .-> PLATFORM
Patients cannot perform administrative operations.
Provider Boundary¶
flowchart LR
PATIENT["Patient"]
PROVIDER["Provider Information"]
SCHEDULE["Provider Availability"]
PATIENT --> PROVIDER
PATIENT --> SCHEDULE
Patients may view provider information necessary to schedule appointments but cannot modify provider resources.
Separation of Responsibilities¶
flowchart TB
SUPER["Super Administrator"]
ADMIN["Tenant Administrator"]
PROVIDER["Provider"]
PATIENT["Patient"]
SUPER -->|"Platform Governance"| SUPER
ADMIN -->|"Organization Operations"| ADMIN
PROVIDER -->|"Clinical Operations"| PROVIDER
PATIENT -->|"Healthcare Participation"| PATIENT
Architectural Principles¶
The Patient role follows:
Personal Ownership¶
Patients access only their own resources.
Privacy First¶
Patient information is protected through strict ownership validation.
Tenant Isolation¶
All patient activities remain within the assigned tenant.
Minimum Necessary Access¶
Patients receive only the permissions required to manage their healthcare interactions.
These boundaries ensure privacy, security, and compliance across the platform.