Free exploration · authored contracts only
Explore the system
Select a capability. The atlas keeps its topology while the chosen X-ray lens reveals a different kind of evidence. Nothing here is an arbitrary integration builder.
X-ray lens
Minimum payloads and active routes
Payload route Every highlighted line is an invoked sender-to-receiver contract.
- Registration message enters the exchange: community-app to iol, in selected contract view; both endpoints are in selected contract view.
- Clinic request or artifact enters the exchange: clinic-ehr to iol, in selected contract view; both endpoints are in selected contract view.
- Hospital requests a permitted shared summary: hospital-ehr to iol, in selected contract view; both endpoints are in selected contract view.
- Laboratory receives an order or returns a result: laboratory to iol, in selected contract view; both endpoints are in selected contract view.
- Pharmacy submits a minimum supply event: pharmacy to iol, in selected contract view; both endpoints are in selected contract view.
- The sending system credential is checked: iol to authentication, in selected contract view; both endpoints are in selected contract view.
- Worker, organization, location and service are related: iol to interlinking, in selected contract view; both endpoints are in selected contract view.
- Identity evidence is evaluated: iol to entity-matching, in selected contract view; both endpoints are in selected contract view.
- Purpose and disclosure policy are evaluated: iol to policy, in selected contract view; both endpoints are in selected contract view.
- Local and enterprise identity links are queried: iol to client-registry, in selected contract view; both endpoints are in selected contract view.
- Canonical facility status and endpoint are queried: iol to facility-registry, in selected contract view; both endpoints are in selected contract view.
- Canonical worker role and status are queried: iol to health-worker-registry, in selected contract view; both endpoints are in selected contract view.
- A versioned semantic mapping is requested: iol to terminology-service, in selected contract view; both endpoints are in selected contract view.
- A fictional product identity is resolved: iol to product-catalogue, in selected contract view; both endpoints are in selected contract view.
- A redacted operation event and derivation evidence are recorded: iol to audit-evidence, in selected contract view; both endpoints are in selected contract view.
- A permitted normalized clinical subset is read or written: iol to shared-health-record, in selected contract view; both endpoints are in selected contract view.
- A periodic minimized aggregate is exported: iol to hmis, in selected contract view; both endpoints are in selected contract view.
- A minimum supply event changes represented stock: iol to lmis, in selected contract view; both endpoints are in selected contract view.
- A separate fictional eligibility or claim state is exchanged: iol to finance-insurance, in selected contract view; both endpoints are in selected contract view.
Active station spine
Trust lens guardrail
This visualizes decisions and evidence.
It does not implement real identity proofing, authentication, encryption, authorization, consent enforcement, key management, legal compliance, or tamper-resistant audit storage. A successful technical check does not certify clinical appropriateness or good care.
Complete architecture, in document order
Text equivalent of the logical atlas. Each capability owns different facts.
| Capability | Role | Authoritative for | Explicitly not authoritative for |
|---|---|---|---|
| Community apppoint of service | Captures a small synthetic registration artifact in a field workflow. |
|
|
| Clinic EHRpoint of service | Owns Lumenbank Clinic local identity, encounter, order, and result workflow context. |
|
|
| Hospital EHRpoint of service | Performs a later permitted cross-town identity query and limited summary retrieval. |
|
|
| Laboratorypoint of service | Receives a normalized order and asserts an immutable synthetic result. |
|
|
| Pharmacypoint of service | Creates a minimum dispense or supply event after resolving product identity. |
|
|
| Interoperability Layerinteroperability | Authenticates systems, invokes policy, validates, routes, mediates, orchestrates, logs, queues, and replays. |
|
|
| Authenticationtrust | Returns a clearly simulated sending-system credential outcome. |
|
|
| Interlinkinginteroperability | Verifies authored practitioner-role, organization, location, and service relationships. |
|
|
| Entity matchinginteroperability | Represents exact, possible, ambiguous, and no-match identity outcomes. |
|
|
| Client Registryreference | Links retained local identifiers to one synthetic enterprise client identity. |
|
|
| Facility Registryreference | Returns canonical facility identity, hierarchy, operational status, services, and endpoint. |
|
|
| Worker Registryreference | Returns canonical synthetic worker identity, role, status, and facility relationship. |
|
|
| Terminologyreference | Validates a tiny code set and governs versioned semantic mappings. |
|
|
| Product Cataloguereference | Resolves a fictional local pack to a canonical fictional product identity. |
|
|
| Shared Health Recordclinical | Stores a normalized, operational, person-centric subset of shared clinical artifacts and versions. |
|
|
| HMISpopulation | Owns a later periodic aggregate reporting fact without patient drill-through. |
|
|
| LMISsupply | Applies an idempotent stock decrement and may issue a replenishment signal. |
|
|
| Finance & insurancefinance | Owns entirely fictional eligibility, claim, and finance states. |
|
|
| Policytrust | Evaluates an authored requester, role, organization, purpose, category, time, and directive input. |
|
|
| Audit & provenanceevidence | Keeps separate evidence of security/operational events and artifact derivation. |
|
|