Mobile-ID Digital TrustISO/IEC 27001:2022 · SIS351224I008Published certification scope
View evidence

AI / IMAGING

Medical Imaging

Governed assistance for professionals; no claims of autonomous diagnosis, guaranteed outcomes or regulatory approval.

  1. 01Modality / PACS
  2. 02DICOM / DICOMweb
  3. 03Secure Ingestion
  4. 04De-identification
  5. 05Imaging Repository
  6. 06AI / Inference
  7. 07Clinician Review
  8. 08Structured Result
  9. 09Clinical Workflow
  10. 10Audit / Evidence

Storage

Images and metadata

Evidence required before publication

Viewer

Review visualization

Evidence required before publication

AI / inference

Prioritization support; no autonomous diagnosis

Evidence required before publication

Clinician decision

Decision remains with the clinician

Evidence required before publication
IMAGING OBJECT MODEL

Keep study, series, instance and report context connected

Medical Imaging should preserve the identifiers and access context that let a viewer, report and external PACS refer to the same imaging episode without flattening everything into generic files.

01

Study context

Bind study identifiers, patient/encounter context, modality and acquisition time according to the deployed integration profile.

02

Series & instance

Preserve hierarchy and SOP/object identifiers needed for retrieval, viewer navigation and evidence; do not rename away source identity.

03

Viewer & report

Viewer access is authorization-controlled and linked to report/worklist context; rendering does not change the authoritative imaging object.

04

Exchange boundary

DICOM/DICOMweb operations, PACS endpoints and supported modalities remain integration-dependent until verified for the deployment.

IMAGING JOURNEY

Order/worklist to controlled access and report

The workflow exposes where identifiers, authorization and evidence cross system boundaries.

Order / worklistEstablish patient, encounter, requested procedure and authorized context.
Acquire / ingestReceive imaging objects and preserve source identifiers/metadata.
IndexCreate searchable study/series/instance metadata without altering authoritative objects.
ViewAuthorize viewer access and correlate who accessed which study/context.
ReportAssociate the diagnostic report/result with the imaging study using stable identifiers.
ExchangeUse verified DICOM/DICOMweb/PACS integration with explicit failure/retry behavior.
Retain / auditApply retention/access rules and retain audit evidence appropriate to the repository/deployment.
TRUST BOUNDARY

Imaging has larger objects and longer-lived access risk

Controls must address not only API authorization but also bulk transfer, viewer sessions, cache/export behavior and retention.

01

Authorization

Scope access by user/workspace/patient context and avoid broad repository access where a narrower study context is sufficient.

02

Transfer & cache

Protect transport and make local/browser cache or export behavior explicit; sensitive imaging must not persist accidentally on shared workstations.

03

Audit

Record access, retrieval/export and material state-changing actions with correlation to user/session and imaging identifiers.

04

Retention

Align object, report, derived image and backup retention with the applicable repository policy and legal/clinical requirements.

Screen detail

Search all Trusted Care
TRUSTED CARE

09 applications

Governed application access; no unverified login URL is invented.

Patient AppPatients & familiesRequest accessDoctor PortalDoctors & cliniciansRequest accessNurse & Care CoordinatorNurses & care coordinatorsRequest accessAdmin PortalOrganization administratorsRequest accessHealth KioskReception & service pointsRequest accessPharmacy PortalPharmacistsRequest accessLaboratory PortalLaboratory teamsRequest accessCareGiver AppCaregivers & familiesRequest accessTelehealthPatients & care teamsRequest access