Example set of Event / Bundle used Security Labels
draftURL
http://hl7.org/fhir/ValueSet/security-label-event-examplesCopied!
Version5.0.0Copied!
PublisherHL7 Security Work GroupDate2022-05-10DescriptionA sample of security labels from [Healthcare Privacy and Security Classification System](security-labels.html#hcs) that are used on events and requests/responses (aka user context or organization context) made up of PurposeOfUse and maybe a refrain/obligation.
Expansion
| Code | Display | System |
|---|---|---|
| HPAYMT | healthcare payment | http://terminology.hl7.org/CodeSystem/v3-ActReason |
| TREAT | treatment | http://terminology.hl7.org/CodeSystem/v3-ActReason |
| ETREAT | Emergency Treatment | http://terminology.hl7.org/CodeSystem/v3-ActReason |
| DELAU | delete after use | http://terminology.hl7.org/CodeSystem/v3-ActCode |
| NOAUTH | no disclosure without subject authorization | http://terminology.hl7.org/CodeSystem/v3-ActCode |
| NORDSCLCD | no redisclosure without consent directive | http://terminology.hl7.org/CodeSystem/v3-ActCode |
systemhttp://terminology.hl7.org/CodeSystem/v3-ActReason
systemhttp://terminology.hl7.org/CodeSystem/v3-ActCode
This value set includes codes based on the following rules:
- Include these codes as defined in
http://terminology.hl7.org/CodeSystem/v3-ActReasonCode Display Definition TREAT treatment To perform one or more operations on information for provision of health care. HPAYMT healthcare payment To perform one or more operations on information for conducting financial or contractual activities related to payment for provision of health care. ETREAT Emergency Treatment To perform one or more operations on information for provision of immediately needed health care for an emergent condition. - Include these codes as defined in
http://terminology.hl7.org/CodeSystem/v3-ActCodeCode Display Definition NOAUTH no disclosure without subject authorization Prohibition on disclosure without information subject's authorization. DELAU delete after use Custodian system must remove target information from access after use. NORDSCLCD no redisclosure without consent directive Prohibition on redisclosure without patient consent directive.
{
"description" : "A sample of security labels from [Healthcare Privacy and Security Classification System](security-labels.html#hcs) that are used on events and requests/responses (aka user context or organization context) made up of PurposeOfUse and maybe a refrain/obligation.",
"compose" : {
"exclude" : [ ],
"include" : [ {
"system" : "http://terminology.hl7.org/CodeSystem/v3-ActReason",
"extension" : [ {
"extension" : [ {
"valueString" : "concept",
"url" : "path"
}, {
"url" : "count",
"valueInteger" : 3
} ],
"url" : "http://health-samurai.io/extensions/excised-data"
} ]
}, {
"system" : "http://terminology.hl7.org/CodeSystem/v3-ActCode",
"extension" : [ {
"extension" : [ {
"valueString" : "concept",
"url" : "path"
}, {
"url" : "count",
"valueInteger" : 3
} ],
"url" : "http://health-samurai.io/extensions/excised-data"
} ]
} ]
},
"date" : "2022-05-10",
"meta" : {
"lastUpdated" : "2023-03-26T15:21:02.749+11:00",
"profile" : [ "http://hl7.org/fhir/StructureDefinition/shareablevalueset" ]
},
"publisher" : "HL7 Security Work Group",
"jurisdiction" : [ {
"coding" : [ {
"system" : "http://unstats.un.org/unsd/methods/m49/m49.htm",
"code" : "001",
"display" : "World"
} ]
} ],
"name" : "SecurityLabelEventExamples",
"experimental" : true,
"resourceType" : "ValueSet",
"title" : "Example set of Event / Bundle used Security Labels",
"extension" : [ {
"valueCode" : "sec",
"url" : "http://hl7.org/fhir/StructureDefinition/structuredefinition-wg"
}, {
"valueCode" : "draft",
"url" : "http://hl7.org/fhir/StructureDefinition/structuredefinition-standards-status"
}, {
"url" : "http://hl7.org/fhir/StructureDefinition/structuredefinition-fmm",
"valueInteger" : 1
}, {
"url" : "http://health-samurai.io/extensions/source",
"valueCode" : "db"
} ],
"status" : "draft",
"id" : "security-label-event-examples",
"url" : "http://hl7.org/fhir/ValueSet/security-label-event-examples",
"identifier" : [ {
"system" : "urn:ietf:rfc:3986",
"value" : "urn:oid:2.16.840.1.113883.4.642.3.3008"
} ],
"version" : "5.0.0",
"contact" : [ {
"telecom" : [ {
"system" : "url",
"value" : "http://hl7.org/fhir"
}, {
"system" : "email",
"value" : "fhir@lists.hl7.org"
} ]
} ],
"text" : {
"div" : "<div xmlns=\"http://www.w3.org/1999/xhtml\">\n <p>This value set includes codes based on the following rules:</p>\n <ul>\n <li>Include these codes as defined in \n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActReason.html\">\n <code>http://terminology.hl7.org/CodeSystem/v3-ActReason</code>\n </a>\n <table class=\"none\">\n <tr>\n <td style=\"white-space:nowrap\">\n <b>Code</b>\n </td>\n <td>\n <b>Display</b>\n </td>\n <td>\n <b>Definition</b>\n </td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActReason.html#v3-ActReason-TREAT\">TREAT</a>\n </td>\n <td>treatment</td>\n <td>To perform one or more operations on information for provision of health care.</td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActReason.html#v3-ActReason-HPAYMT\">HPAYMT</a>\n </td>\n <td>healthcare payment</td>\n <td>To perform one or more operations on information for conducting financial or contractual activities related to payment for provision of health care.</td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActReason.html#v3-ActReason-ETREAT\">ETREAT</a>\n </td>\n <td>Emergency Treatment</td>\n <td>To perform one or more operations on information for provision of immediately needed health care for an emergent condition.</td>\n </tr>\n </table>\n </li>\n <li>Include these codes as defined in \n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActCode.html\">\n <code>http://terminology.hl7.org/CodeSystem/v3-ActCode</code>\n </a>\n <table class=\"none\">\n <tr>\n <td style=\"white-space:nowrap\">\n <b>Code</b>\n </td>\n <td>\n <b>Display</b>\n </td>\n <td>\n <b>Definition</b>\n </td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActCode.html#v3-ActCode-NOAUTH\">NOAUTH</a>\n </td>\n <td>no disclosure without subject authorization</td>\n <td>Prohibition on disclosure without information subject's authorization.</td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActCode.html#v3-ActCode-DELAU\">DELAU</a>\n </td>\n <td>delete after use</td>\n <td>Custodian system must remove target information from access after use.</td>\n </tr>\n <tr>\n <td>\n <a href=\"http://terminology.hl7.org/5.1.0/CodeSystem-v3-ActCode.html#v3-ActCode-NORDSCLCD\">NORDSCLCD</a>\n </td>\n <td>no redisclosure without consent directive</td>\n <td>Prohibition on redisclosure without patient consent directive.</td>\n </tr>\n </table>\n </li>\n </ul>\n </div>",
"status" : "extensions"
}
}