Clinic Admin
Northstar Demo Clinic

Clinic Admin · Northstar Demo Clinic

Dashboard

Operational queues, setup progress, warnings, and synthetic demo metrics. Demo data is synthetic and isolated from live patient records.

Demo data activeNo live PHI, production connections, or shared sessions.15 patient-facing modules enabled in this browser demo.

Clinic admin

Dashboard

Operational queues, setup progress, warnings, and synthetic demo metrics.

Last refreshed6/11/2026, 7:45:00 PM · PHI-minimized, metadata-only dashboard contract.

Role-aware next actions

critical · today

Review adolescent/privacy policy before PHI enablement

Owner: Privacy owner

Permission: portal.privacy.manage

Open privacy-compliance
high · today

Audit proxy access and dependent/adolescent visibility

Owner: Clinic operations

Permission: portal.patients.manage

Open patients
high · this-week

Review document/lab release controls

Owner: Records lead

Permission: portal.documents.manage

Open documents-labs
medium · scheduled

Confirm all integrations remain sandbox/mock before demo

Owner: Integration owner

Permission: portal.integrations.mock.configure

Open integrations
medium · scheduled

Run buyer demo personas through patient/proxy/clinic flows

Owner: Demo owner

Permission: portal.dashboard.read

Open sandbox

Dashboard states

  • loading: Skeleton cards preserve selected filters while /api/admin/dashboard loads.
  • empty: No matching queue items: show setup guidance and Demo / Sandbox seed link.
  • partial-permission: Render allowed metadata cards and explain restricted cards by permission name.
  • integration-unavailable: Keep live connector actions disabled and show sandbox/mock state.
  • offline-retry: Show non-destructive retry guidance without duplicate writes.
  • success: Show last refreshed timestamp, source tab, redaction state, and next action owner.

Audit / telemetry policy

  • Passive dashboard reads use PHI-safe telemetry only.
  • High-impact actions emit metadata-only audit events.
  • Denied card/action attempts are audited as authorization failures.
  • Cards never include raw message, document, lab, intake, billing, credential, or secret payload values.

Pending setup tasks

Confirm patient-facing support copyREADY_FOR_REVIEW
Select production EHR adapter pathFUTURE_DECISION
Complete security review before live credentialsREQUIRED_BEFORE_PRODUCTION
High-risk workflows require confirmationsession revoke · lock/unlock · proxy access change · data export/delete · document revoke · staff role change

Clinic admin workflow

Dashboard operations command center

Show current priorities across portal setup, patient activation, queues, integration health, privacy posture, and admin risk without exposing raw payloads.

Ready: Dashboard operations command center
Open operational queues8
Setup readiness15/20
PHI egressblocked
Restricted actions4 step-up

Simulated UI states

Success state: Confirm the accepted demo change, show the audit event, and keep the user on the same tab/context.

Run workflow action from any record to generate a synthetic, audit-backed demo event.

needs action - today

Review portal launch blockers

Summarizes setup gaps and links to the responsible tab.

Owner
Clinic operations
Patient ref
patient:synthetic-alpha
Details
source: readiness checklist - raw payload: none
blocked until reviewed - this week

Confirm privacy policy status

Privacy and patient data display controls must be reviewed before real PHI use.

Owner
Privacy owner
Details
fail closed - policy required
demo connectors only - scheduled

Integration health review

All integration cards clearly show mock/sandbox state and no credentials.

Owner
Integration owner
Details
secrets: redacted - egress: blocked

Information shown

  • clinic-scoped dashboard summary
  • per-card source and last refreshed
  • permission-filtered action list
  • PHI-minimized counts only
  • cross-link route metadata

Access rules

Allowed: portal.dashboard.read - portal.dashboard.triage - portal.audit.read-limited

Blocked: cross-clinic access - raw PHI export - secret/token reveal - production connector changes without review

Workflow run log

No workflow actions submitted yet. Use any protected action to generate a synthetic, audit-backed demo event.