Built-in Fixed Policies
EAP

 
Please contact us if you would like to try out this early access feature.

This page documents the fixed IConsentService implementations provided by Smile that can be used in consent rules. Fixed policies do not require any parameters and are configured using the fixedPolicy key.

See Built-in Parameterized Policies for configurable policies that accept query parameters.

ALLOW_NON_PATIENT_COMPARTMENT_RESOURCES

Returns AUTHORIZED for all non-Patient compartment resources (i.e. Binary, Organization, etc.) or PROCEED if the resource is in the Patient compartment.

Sample usage:

{
	"canSeeResource": {
		"consentRules": [
			...
			{ "name": "ALLOW_NON_PATIENT_COMPARTMENT_RULE", "fixedPolicy": "ALLOW_NON_PATIENT_COMPARTMENT_RESOURCES" },
			...
		]
	}
}

ALLOW_SUPERUSER

Returns AUTHORIZED if the requesting user has the SUPERUSER permission, or PROCEED if they do not.

Sample usage:

{
	"canSeeResource": {
		"consentRules": [
			...
			{ "name": "ALLOW_SUPERUSER_RULE", "fixedPolicy": "ALLOW_SUPERUSER" },
			...
		]
	}
}

UNRESTRICTED_V3_CONFIDENTIALITY

Returns AUTHORIZED if a resource has an unrestricted security label (http://terminology.hl7.org/CodeSystem/v3-Confidentiality|U) or PROCEED if it does not.

Sample usage:

{
	"canSeeResource": {
		"consentRules": [
			...
			{ "name": "ALLOW_UNRESTRICTED_RULE", "fixedPolicy": "UNRESTRICTED_V3_CONFIDENTIALITY" },
			...
		]
	}
}