Permissions¶
Overview¶
Providers are healthcare professionals who deliver clinical services to patients within the VitalBridge platform.
Providers have access only to resources necessary to perform clinical and consultation-related activities.
Providers are tenant-scoped users and may only access resources assigned to them.
Permission Scope¶
flowchart TB
PROVIDER["Provider"]
PROFILE["Own Profile"]
SCHEDULE["Own Schedule"]
APPOINTMENTS["Own Appointments"]
CONSULTATIONS["Own Consultations"]
PROVIDER --> PROFILE
PROVIDER --> SCHEDULE
PROVIDER --> APPOINTMENTS
PROVIDER --> CONSULTATIONS
Hold "Alt" / "Option" to enable pan & zoom
Resource Access Matrix¶
| Resource | Permission |
|---|---|
| Own Profile | Read / Update |
| Other Provider Profiles | Read Only |
| Own Schedule | Full Access |
| Other Provider Schedules | No Access |
| Own Appointments | Read |
| Other Provider Appointments | No Access |
| Own Consultations | Full Access |
| Patient Information (Assigned Appointments) | Read |
| Tenant Administration | No Access |
| Platform Administration | No Access |
Schedule Permissions¶
Providers may:
- Create availability schedules
- Update availability schedules
- Create schedule overrides
- Submit leave requests
- Cancel leave requests
flowchart LR
PROVIDER["Provider"]
SCHEDULE["Schedule"]
LEAVE["Leave Request"]
PROVIDER --> SCHEDULE
PROVIDER --> LEAVE
Hold "Alt" / "Option" to enable pan & zoom
Appointment Permissions¶
Providers may:
- View assigned appointments
- Review appointment details
- Join consultations
- Complete consultations
Providers may not:
- Access appointments assigned to another provider
Consultation Permissions¶
Providers may:
- Join scheduled consultations
- Conduct consultations
- End consultations
flowchart LR
PROVIDER["Provider"]
VIDEO["Video Session"]
CONSULT["Consultation"]
PROVIDER --> VIDEO
VIDEO --> CONSULT
Hold "Alt" / "Option" to enable pan & zoom
Restricted Operations¶
Providers cannot:
- Create tenants
- Manage tenant administrators
- Create providers
- Register patients
- Access platform settings
- Access other providers' schedules
- Access unrelated patient records
Security Principles¶
The Provider role follows:
- Clinical ownership
- Resource ownership
- Tenant isolation
- Least privilege