FAQ
Frequently Asked Questions
Practical answers across platform, RPM, devices, applications, privacy, consent, integration, developer workflow and deployment.
PlatformHow does Trusted Care connect applications and enterprise systems ?
Applications use governed platform services while enterprise systems connect through approved API, FHIR, event or webhook interfaces. System-of-record ownership stays explicit per deployment.
RPMWhat happens when a measurement raises an alert ?
Trusted Care can validate subject, time, unit and quality context, evaluate configured monitoring rules, create accountable review work, and retain acknowledgement/escalation/resolution evidence. Clinical response remains the provider’s responsibility.
DevicesHow is device compatibility represented ?
Compatibility is tied to the exact model, firmware/OS, interface and measurement profile. Vendor-declared capability is kept separate from Trusted Care integration verification and regulatory status.
ApplicationsAre application permissions role-aware ?
Yes. Access can consider role, organization/workspace, patient or care relationship, purpose and current consent/delegation. Sensitive actions can require step-up or additional approval.
PrivacyHow is privacy enforced across integrations ?
Trusted Care applies configured purpose, minimization, authorization and disclosure controls. The customer remains responsible for lawful basis, source-system obligations and deployment-specific retention policy.
ConsentWhat happens when consent is withdrawn ?
Withdrawal changes future authorization decisions according to policy. Historical evidence may be retained where accountability, legal hold or configured retention requires it.
IntegrationWhich interoperability patterns are supported ?
The architecture provides FHIR R4, REST/OpenAPI, events, signed webhooks, DeviceKit and OAuth/mTLS patterns. The exact enabled interfaces depend on the deployment and approved integration profile.
DeveloperWhat must a developer prove before production ?
Register accountable ownership, use least privilege, test happy and failure paths in sandbox, demonstrate observability and recovery, and complete the production-readiness review for the confirmed environment.
DeploymentWhat should be confirmed before deployment ?
Confirm tenant/data boundary, connectivity, system-of-record ownership, identity/access, consent/privacy, device/integration profile, monitoring, recovery, credentials, failure handling and accountable owners.