On this page:
   25.66    Security Inbound Script 25.68    SMART Definitions Seeding   

25.67SMART Authorization

 

The SMART Authorization configuration category includes the following configurable options:

  • Enforce Approved Scopes to Restrict Permissions

25.67.1Property: Enforce Approved Scopes to Restrict Permissions

 
Property Name Enforce Approved Scopes to Restrict Permissions
Property Key
Property Type BOOLEAN
Description When enabled, permission will be stripped from a user's session if they are not supported by an approved SMART on FHIR scope. For example, any FHIR write permissions will be removed from a session if the user has not approved (or a client is set to auto-approve) a scope such as Patient/*.write.
Default Value true
Example Property
module.[MODULE_ID].config.enforce_approved_scopes_to_restrict_permissions = true
   25.66    Security Inbound Script 25.68    SMART Definitions Seeding