Difference between revisions of "Smart Health Card"

From MgmtWiki
Jump to: navigation, search
m (Use Cases)
(Embedding in QR codes)
(14 intermediate revisions by the same user not shown)
Line 5: Line 5:
  
 
==Context==
 
==Context==
* [https://smarthealth.cards/index.html What are SMART Health Cards?] Web Site from Boston Children's Hospital.
+
* [https://smarthealth.cards/index.html What are SMART Health Cards?] The (SHC) Web Site from Boston Children's Hospital.
 
* The primary context is the [https://wiki.idesg.org/wiki/index.php/Health_Care_Profile Kantara Health Care Profile].
 
* The primary context is the [https://wiki.idesg.org/wiki/index.php/Health_Care_Profile Kantara Health Care Profile].
* There is a half-baked [https://www.youtube.com/watch?v=UdlmRoJK1Yg&t=26s effort in Microsoft] as part of VCI to take ownership of this term [https://bitly.com/fhir20-did for Microsoft or the VCI] that they belong to using DIDs.
+
* There is a commercial [https://www.youtube.com/watch?v=UdlmRoJK1Yg&t=26s effort in Microsoft] as part of VCI to take ownership of this term [https://bitly.com/fhir20-did for the VCI] that they belong to using DIDs. The SHC is structure like a [[Verifiable Credential]] using FHIR formatted data from HL7 EHRs, but there is no ability to give patients control of the data that is released from the SHC.
 +
 
 +
===Design Goals===
 +
# Support end-to-end workflow where users receive and present relevant healthcare data
 +
# Enable workflow with open standards
 +
# Support strong cryptographic signatures
 +
# Enable privacy preserving data presentations for specific use cases
  
 
==Use Cases==
 
==Use Cases==
 
* Authentication and Information Sharing occurs when a [[Relying Party]] scans or downloads the card and checks the user name and birthdate against other ID, like a driver's license.
 
* Authentication and Information Sharing occurs when a [[Relying Party]] scans or downloads the card and checks the user name and birthdate against other ID, like a driver's license.
 
* [https://support.apple.com/en-us/HT212752 Apple iOS 15 can capture and share] the [[Smart Health Card]].
 
* [https://support.apple.com/en-us/HT212752 Apple iOS 15 can capture and share] the [[Smart Health Card]].
 +
* [https://support.apple.com/guide/healthregister/verifiable-health-records-support-apdc9fec917c/web Verifiable Health Records support] for Apple EHR vendors describes that the SHC is included in the health app rather than in the wallet.
 +
 +
==Technical Details==
 +
 +
* [https://spec.smarthealth.cards Smart Health Card Technical Specs]
 +
* [https://github.com/smart-on-fhir/health-cards Github for smart health cards]
 +
* [https://github.com/smart-on-fhir/health-cards-dev-tools Github for smart health cards dev tools]
 +
The overall JWS payload matches the following structure (before it is minified and compressed):
 +
{
 +
  "iss": "<<Issuer URL>>",
 +
  "nbf": 1591037940,
 +
  "vc": {
 +
    "type": [
 +
      "https://smarthealth.cards#health-card",
 +
      "<<Additional Types>>",
 +
    ],
 +
    "credentialSubject": {
 +
      "fhirVersion": "<<FHIR Version, e.g. '4.0.1'>>",
 +
      "fhirBundle":{
 +
        "resourceType": "Bundle",
 +
        "type": "collection",
 +
        "entry": ["<<FHIR Resource>>", "<<FHIR Resource>>", "..."]
 +
      }
 +
    }
 +
  }
 +
}
 +
===Embedding in QR codes===
 +
* The [[Smart Health Card]] is typically embedded in a JWS (JOSE) format with a header, payload and signature block for verification. While it can be transported in many media, the commonly used method is in a QR code displayed on paper in stored as a photo in a smart phone.
 +
*Each JWS string that appears in the [[Verifiable Credential]] of a .smart-health-card file can be embedded in one or more QR codes. We aim to ensure that printed (or electronically displayed) codes are usable at physical dimensions of 40mmx40mm. This constraint allows us to use QR codes up to Version 22, at 105x105 modules. When embedding a JWS string in QR codes, the JWS string SHALL be encoded as Numerical Mode QR codes consisting of the digits 0-9 (see [https://spec.smarthealth.cards/#encoding-chunks-as-qr-codes Encoding Chunks as QR codes]).
 +
* On iPhones the default behavior of scanning a QR [[Smart Health Card]] is to ask to store the VC in the Apple [[Wallet]].
 +
*WARNING the size recommended above can be scanned by modern (in 2021) smart phone with a high resolution camera, but cannot be resolved by most PC cameras or less expensive smart phones.
  
 
==References==
 
==References==
 +
* [[Smart Health Card Example]] in typescript on Windows
  
 
[[Category: Health]]
 
[[Category: Health]]

Revision as of 17:29, 27 October 2021

Full Title or Meme

A (usually virtual) Smart Card containing at least some Identity and some Health Information, typically vaccination data,

The Smart Health Card is one of a series of SMART health specifications initiated by Boston Children's Hospital often with Harvard and other Boston hospitals.

Context

Design Goals

  1. Support end-to-end workflow where users receive and present relevant healthcare data
  2. Enable workflow with open standards
  3. Support strong cryptographic signatures
  4. Enable privacy preserving data presentations for specific use cases

Use Cases

Technical Details

The overall JWS payload matches the following structure (before it is minified and compressed):

{
 "iss": "<<Issuer URL>>",
 "nbf": 1591037940,
 "vc": {
   "type": [
     "https://smarthealth.cards#health-card",
     "<<Additional Types>>",
   ],
   "credentialSubject": {
     "fhirVersion": "<<FHIR Version, e.g. '4.0.1'>>",
     "fhirBundle":{
       "resourceType": "Bundle",
       "type": "collection",
       "entry": ["<<FHIR Resource>>", "<<FHIR Resource>>", "..."]
     }
   }
 }
}

Embedding in QR codes

  • The Smart Health Card is typically embedded in a JWS (JOSE) format with a header, payload and signature block for verification. While it can be transported in many media, the commonly used method is in a QR code displayed on paper in stored as a photo in a smart phone.
  • Each JWS string that appears in the Verifiable Credential of a .smart-health-card file can be embedded in one or more QR codes. We aim to ensure that printed (or electronically displayed) codes are usable at physical dimensions of 40mmx40mm. This constraint allows us to use QR codes up to Version 22, at 105x105 modules. When embedding a JWS string in QR codes, the JWS string SHALL be encoded as Numerical Mode QR codes consisting of the digits 0-9 (see Encoding Chunks as QR codes).
  • On iPhones the default behavior of scanning a QR Smart Health Card is to ask to store the VC in the Apple Wallet.
  • WARNING the size recommended above can be scanned by modern (in 2021) smart phone with a high resolution camera, but cannot be resolved by most PC cameras or less expensive smart phones.

References