Secondary Use FHIR Server Implementation Guide
0.1.0 - ci-build
Secondary Use FHIR Server Implementation Guide - Local Development build (v0.1.0) built by the FHIR (HL7® FHIR® Standard) Build Tools. See the Directory of published versions
Every adapter export applies the same server policy. There is no privacy-mode query parameter.
The policy:
identifier, name, telecom, address, contact, photo, generalPractitioner, and managingOrganization from Patient;The transformation preserves time-of-day while shifting the calendar date where supported.
Callers request a smaller analytical representation with standard Bulk Data _elements. The UI offers two choices:
_elements._elements.Minimization therefore happens after mandatory pseudonymization and never weakens the server privacy boundary. Partial resources carry the standard SUBSETTED tag.
This is a deterministic local prototype, not a certified anonymization mechanism. It does not implement consent evaluation, user authorization, formal disclosure-risk scoring, k-anonymity, differential privacy, or legal certification.