Uploaded image for project: 'FHIR Specification Feedback'
  1. FHIR Specification Feedback
  2. FHIR-39998

Inconsistent use of fhirUser scope

    XMLWordPrintableJSON

Details

    • Icon: Change Request Change Request
    • Resolution: Persuasive
    • Icon: Highest Highest
    • SMART on FHIR (FHIR)
    • 2.0.0
    • FHIR Infrastructure
    • (NA)
    • Hide

      Change "if app needs authenticated patient identity" to say "if app needs authenticated end-user identity".

      Show
      Change "if app needs authenticated patient identity" to say "if app needs authenticated end-user identity".
    • Josh Mandel/Rick Geimer: 17-0-0
    • Clarification
    • Non-substantive

    Description

      Description of fhirUser scope in Parameter table indicates "patient identity"; description below table indicates end-user.

      Correct, or clarify how both are accurate.

      Existing Wording:

      scope required Must describe the access that the app needs, including scopes like patient/*.rs, openid and fhirUser (if app needs authenticated patient identity)…

      If the app needs to authenticate the identity of or retrieve information about the end-user, it should include two OpenID Connect scopes: openid and fhirUser.

      (Comment 14 - imported by: Ron G. Parker)

      Attachments

        Activity

          People

            Unassigned Unassigned
            Rongparker Ron G. Parker
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: