Skip to main content

Milestones

Four milestones. You certify them one at a time, in order, and together they spell CARE.

In short

M2 needs a facility ID and registration in the HIP role before it can share a record. That ID does not have to come from M4. A facility can be registered by hand on the NHPR portal, and many products do exactly that and never build M4. Build M4 when you want to register facilities or professionals from your own software instead. Either way, get the facility ID early, because M2 cannot be tested end to end without one.

One patient, four milestones

Meera arrives at your clinic. Each card below is one thing your system has to be able to do for her, and one milestone that gives you it.

  1. Milestone 1 · CreateRegister Meera's ABHA

    Meera walks in without a health ID. Create her ABHA so every record from today onwards links to one identity.

    Build M1 Create
  2. Milestone 2 · AttachAttach today's visit to her ABHA

    Her consultation note and her blood test are yours to hold. Group them into care contexts, link them to her ABHA address, and answer when her app comes looking.

    Build M2 Attach
  3. Milestone 3 · RetrieveRetrieve the scan from another hospital

    Meera mentions a scan done last year, somewhere else. Ask her for consent, wait for her answer, then fetch and decrypt what she granted.

    Build M3 Retrieve
  4. Milestone 4 · EnrolEnrol the clinic and its doctors

    None of the above leaves sandbox until the clinic is a registered facility and its doctors hold professional IDs. Enrol both, then link your software to the facility.

    Build M4 Enrol

The same story from Meera's own app

If you are building the patient's app rather than the clinic's system, you are building a PHR application. The work splits into three, and each part mirrors a milestone on the provider side.

  1. PHR 1 · Identity and profileMeera signs up and holds her own profile

    She registers with a mobile number or an existing ABHA number, logs in four different ways, and manages her card, her QR code and her family members.

    Build P1
  2. PHR 2 · Linking and recordsShe finds records she never linked

    She searches for the hospital she visited last year, sees what it holds, verifies by one time password, and pulls those care contexts onto her ABHA address.

    Build P2
  3. PHR 3 · Consent and notificationsShe decides who sees what

    A clinic asks for her records. She reads the request, narrows it, grants or denies it, and revokes it later. Your app tells her each time.

    Build P3

Which milestones you need

Each row below is the entity you build for. HIP and HIU are roles that entity takes, not kinds of software: whoever holds a record and publishes it is the HIP, and whoever asks to read records they did not create is the HIU.

Who you build forM1M2M3M4
A facilityRequiredThe bulk of your buildWhere it also reads records it did not createRequired
An insurer, a referral service or an analytics serviceRequiredNot neededThe bulk of your buildConfirm at onboarding
A citizenP1, the patient sideP2, the patient sideP3, the patient sideNot needed

What each milestone gets you

MilestoneWhat you getWho needs it
M1 CreateIdentity and the session tokenEveryone
M2 AttachLinking and sharing recordsA facility publishing records, and a citizen pushing their own
M3 RetrieveConsent and record fetchingAnyone reading records they did not create, and every PHR app
M4 EnrolA facility ID and professional registrationAnyone going live as a facility

These pages give the steps, the order to build them in and the failure modes. Every request URL, header and body sits on the API reference pages, one page per call.

Next

Start with M1 Create, or read Go live for what happens after the fourth certificate.