diff --git a/.gitignore b/.gitignore
index 75a1f8e..3c09827 100644
--- a/.gitignore
+++ b/.gitignore
@@ -92,6 +92,7 @@ packages/
node_modules/
dist/
build/
+data-protection-keys/
# =========================
# Docker
diff --git a/VigilCareClinicalAPI/Configuration/PhiEncryptionOptions.cs b/VigilCareClinicalAPI/Configuration/PhiEncryptionOptions.cs
new file mode 100644
index 0000000..25392ba
--- /dev/null
+++ b/VigilCareClinicalAPI/Configuration/PhiEncryptionOptions.cs
@@ -0,0 +1,18 @@
+public class PhiEncryptionOptions
+{
+ public const string Section = "PhiEncryption";
+
+ ///
+ /// Purpose string for IDataProtector. Rotate by changing purpose and re-encrypting.
+ ///
+ public string ProtectorPurpose { get; set; } = "VigilCare.PatientPhi.v1";
+
+ ///
+ /// HMAC key for name search tokens (base64). Separate from encryption key.
+ /// In production: store in Key Vault, not appsettings.
+ ///
+ public string SearchTokenKey { get; set; } = null!;
+
+ /// When true, logs PHI access for list/search operations as aggregate events.
+ public bool LogListAccess { get; set; } = true;
+}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Data/AppDbContext.cs b/VigilCareClinicalAPI/Data/AppDbContext.cs
index 63b4f6f..243054f 100644
--- a/VigilCareClinicalAPI/Data/AppDbContext.cs
+++ b/VigilCareClinicalAPI/Data/AppDbContext.cs
@@ -2,7 +2,14 @@ using Microsoft.EntityFrameworkCore;
public class AppDbContext : DbContext
{
- public AppDbContext(DbContextOptions options) : base(options) { }
+ private readonly IPhiEncryptionService? _phiCrypto;
+
+ public AppDbContext(
+ DbContextOptions options,
+ IPhiEncryptionService? phiCrypto = null) : base(options)
+ {
+ _phiCrypto = phiCrypto;
+ }
public DbSet Patients => Set();
public DbSet Encounters => Set();
@@ -21,9 +28,13 @@ public class AppDbContext : DbContext
public DbSet ExternalResourceIdentifiers => Set();
public DbSet ClinicalUsers => Set();
public DbSet ClinicalAuditLogs => Set();
+ public DbSet PhiAccessLogs => Set();
protected override void OnModelCreating(ModelBuilder modelBuilder)
{
modelBuilder.ApplyConfigurationsFromAssembly(typeof(AppDbContext).Assembly);
+
+ if (_phiCrypto is not null)
+ modelBuilder.ConfigurePhiConverters(_phiCrypto);
}
}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Data/Configurations/PatientConfiguration.cs b/VigilCareClinicalAPI/Data/Configurations/PatientConfiguration.cs
index 7e0e561..bbe05fa 100644
--- a/VigilCareClinicalAPI/Data/Configurations/PatientConfiguration.cs
+++ b/VigilCareClinicalAPI/Data/Configurations/PatientConfiguration.cs
@@ -21,6 +21,9 @@ public class PatientConfiguration : IEntityTypeConfiguration
builder.Property(p => p.Allergies).HasColumnName("allergies");
builder.Property(p => p.EmergencyContactName).HasColumnName("emergency_contact_name").HasMaxLength(200);
builder.Property(p => p.EmergencyContactPhone).HasColumnName("emergency_contact_phone").HasMaxLength(20);
+ builder.Property(p => p.NameSearchToken)
+ .HasColumnName("name_search_token")
+ .HasMaxLength(64);
builder.Property(p => p.CreatedAt).HasColumnName("created_at").HasDefaultValueSql("NOW()");
// MRN uses exact-match unique index — MRN lookups are always equality checks,
@@ -29,5 +32,6 @@ public class PatientConfiguration : IEntityTypeConfiguration
// equality match — so no index here; full ILIKE is intentionally unindexed
// at this scale (pg_trgm GIN would be warranted at >500k patients).
builder.HasIndex(p => p.Mrn).IsUnique();
+ builder.HasIndex(p => p.NameSearchToken);
}
}
diff --git a/VigilCareClinicalAPI/Data/Configurations/PhiAccessLogConfiguration.cs b/VigilCareClinicalAPI/Data/Configurations/PhiAccessLogConfiguration.cs
new file mode 100644
index 0000000..49a426f
--- /dev/null
+++ b/VigilCareClinicalAPI/Data/Configurations/PhiAccessLogConfiguration.cs
@@ -0,0 +1,27 @@
+using Microsoft.EntityFrameworkCore;
+using Microsoft.EntityFrameworkCore.Metadata.Builders;
+
+public class PhiAccessLogConfiguration : IEntityTypeConfiguration
+{
+ public void Configure(EntityTypeBuilder builder)
+ {
+ builder.ToTable("phi_access_logs");
+ builder.HasKey(p => p.Id);
+ builder.Property(p => p.Id).HasColumnName("id").HasDefaultValueSql("gen_random_uuid()");
+ builder.Property(p => p.AccessType).HasColumnName("access_type").HasMaxLength(20).IsRequired()
+ .HasConversion(v => v.ToDbString(), v => PhiAccessTypeExtensions.FromDbString(v));
+ builder.Property(p => p.PatientId).HasColumnName("patient_id");
+ builder.Property(p => p.UserId).HasColumnName("user_id").IsRequired();
+ builder.Property(p => p.UserDisplayName).HasColumnName("user_display_name").HasMaxLength(200).IsRequired();
+ builder.Property(p => p.ResourcePath).HasColumnName("resource_path").HasMaxLength(500).IsRequired();
+ builder.Property(p => p.SearchQueryHash).HasColumnName("search_query_hash").HasMaxLength(64);
+ builder.Property(p => p.ResultCount).HasColumnName("result_count");
+ builder.Property(p => p.IpAddress).HasColumnName("ip_address").HasMaxLength(45);
+ builder.Property(p => p.CorrelationId).HasColumnName("correlation_id").HasMaxLength(100);
+ builder.Property(p => p.AccessedAt).HasColumnName("accessed_at").HasDefaultValueSql("NOW()");
+
+ builder.HasIndex(p => p.PatientId);
+ builder.HasIndex(p => p.UserId);
+ builder.HasIndex(p => p.AccessedAt);
+ }
+}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Data/PatientPhiConverterConfigurator.cs b/VigilCareClinicalAPI/Data/PatientPhiConverterConfigurator.cs
new file mode 100644
index 0000000..f7ed868
--- /dev/null
+++ b/VigilCareClinicalAPI/Data/PatientPhiConverterConfigurator.cs
@@ -0,0 +1,42 @@
+using Microsoft.EntityFrameworkCore;
+
+public static class PatientPhiConverterConfigurator
+{
+ public static void ConfigurePhiConverters(
+ this ModelBuilder modelBuilder,
+ IPhiEncryptionService crypto)
+ {
+ var entity = modelBuilder.Entity();
+
+ entity.Property(p => p.FirstName)
+ .HasConversion(
+ v => crypto.Encrypt(v),
+ v => crypto.Decrypt(v));
+
+ entity.Property(p => p.LastName)
+ .HasConversion(
+ v => crypto.Encrypt(v),
+ v => crypto.Decrypt(v));
+
+ entity.Property(p => p.Allergies)
+ .HasConversion(
+ v => v == null ? null! : crypto.Encrypt(v),
+ v => v == null ? null : crypto.Decrypt(v));
+
+ entity.Property(p => p.EmergencyContactName)
+ .HasConversion(
+ v => v == null ? null! : crypto.Encrypt(v),
+ v => v == null ? null : crypto.Decrypt(v));
+
+ entity.Property(p => p.EmergencyContactPhone)
+ .HasConversion(
+ v => v == null ? null! : crypto.Encrypt(v),
+ v => v == null ? null : crypto.Decrypt(v));
+
+ // DateOfBirth stored as encrypted ISO string
+ entity.Property(p => p.DateOfBirth)
+ .HasConversion(
+ v => crypto.Encrypt(v.ToString("yyyy-MM-dd")),
+ v => DateOnly.Parse(crypto.Decrypt(v)));
+ }
+}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Domains/Entities/Patient.cs b/VigilCareClinicalAPI/Domains/Entities/Patient.cs
index 412dea4..39f8a42 100644
--- a/VigilCareClinicalAPI/Domains/Entities/Patient.cs
+++ b/VigilCareClinicalAPI/Domains/Entities/Patient.cs
@@ -10,6 +10,9 @@ public class Patient
public string? Allergies { get; set; }
public string? EmergencyContactName { get; set; }
public string? EmergencyContactPhone { get; set; }
+
+ /// HMAC token for name search. Not PHI — enables lookup without decrypting all rows.
+ public string? NameSearchToken { get; set; }
public string Status { get; set; } = "active";
public DateTimeOffset CreatedAt { get; set; }
diff --git a/VigilCareClinicalAPI/Domains/Entities/PhiAccessLog.cs b/VigilCareClinicalAPI/Domains/Entities/PhiAccessLog.cs
new file mode 100644
index 0000000..7a4c02b
--- /dev/null
+++ b/VigilCareClinicalAPI/Domains/Entities/PhiAccessLog.cs
@@ -0,0 +1,14 @@
+public class PhiAccessLog
+{
+ public Guid Id { get; set; }
+ public PhiAccessType AccessType { get; set; }
+ public Guid? PatientId { get; set; }
+ public Guid UserId { get; set; }
+ public string UserDisplayName { get; set; } = null!;
+ public string ResourcePath { get; set; } = null!;
+ public string? SearchQueryHash { get; set; }
+ public int? ResultCount { get; set; }
+ public string? IpAddress { get; set; }
+ public string? CorrelationId { get; set; }
+ public DateTimeOffset AccessedAt { get; set; }
+}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Domains/Enums/PhiAccessType.cs b/VigilCareClinicalAPI/Domains/Enums/PhiAccessType.cs
new file mode 100644
index 0000000..2695dcf
--- /dev/null
+++ b/VigilCareClinicalAPI/Domains/Enums/PhiAccessType.cs
@@ -0,0 +1,31 @@
+public enum PhiAccessType
+{
+ View,
+ List,
+ Search,
+ Create,
+ Update
+}
+
+public static class PhiAccessTypeExtensions
+{
+ public static string ToDbString(this PhiAccessType t) => t switch
+ {
+ PhiAccessType.View => "VIEW",
+ PhiAccessType.List => "LIST",
+ PhiAccessType.Search => "SEARCH",
+ PhiAccessType.Create => "CREATE",
+ PhiAccessType.Update => "UPDATE",
+ _ => throw new ArgumentOutOfRangeException(nameof(t))
+ };
+
+ public static PhiAccessType FromDbString(string v) => v switch
+ {
+ "VIEW" => PhiAccessType.View,
+ "LIST" => PhiAccessType.List,
+ "SEARCH" => PhiAccessType.Search,
+ "CREATE" => PhiAccessType.Create,
+ "UPDATE" => PhiAccessType.Update,
+ _ => throw new ArgumentOutOfRangeException(nameof(v))
+ };
+}
\ No newline at end of file
diff --git a/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.Designer.cs b/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.Designer.cs
new file mode 100644
index 0000000..ea56ef6
--- /dev/null
+++ b/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.Designer.cs
@@ -0,0 +1,1291 @@
+//
+using System;
+using Microsoft.EntityFrameworkCore;
+using Microsoft.EntityFrameworkCore.Infrastructure;
+using Microsoft.EntityFrameworkCore.Migrations;
+using Microsoft.EntityFrameworkCore.Storage.ValueConversion;
+using Npgsql.EntityFrameworkCore.PostgreSQL.Metadata;
+
+#nullable disable
+
+namespace VigilCareClinicalAPI.Migrations
+{
+ [DbContext(typeof(AppDbContext))]
+ [Migration("20260622130402_AddPatientNameSearchToken")]
+ partial class AddPatientNameSearchToken
+ {
+ ///
+ protected override void BuildTargetModel(ModelBuilder modelBuilder)
+ {
+#pragma warning disable 612, 618
+ modelBuilder
+ .HasAnnotation("ProductVersion", "8.0.4")
+ .HasAnnotation("Relational:MaxIdentifierLength", 63);
+
+ NpgsqlModelBuilderExtensions.UseIdentityByDefaultColumns(modelBuilder);
+
+ modelBuilder.Entity("AlertThreshold", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("CriticalHigh")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("critical_high");
+
+ b.Property("CriticalLow")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("critical_low");
+
+ b.Property("DisplayName")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("display_name");
+
+ b.Property("ObservationCode")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("observation_code");
+
+ b.Property("SuppressionWindowMinutes")
+ .HasColumnType("integer")
+ .HasColumnName("suppression_window_minutes");
+
+ b.Property("Unit")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("unit");
+
+ b.Property("WarningHigh")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("warning_high");
+
+ b.Property("WarningLow")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("warning_low");
+
+ b.HasKey("Id");
+
+ b.HasIndex("ObservationCode")
+ .IsUnique();
+
+ b.ToTable("alert_thresholds", (string)null);
+ });
+
+ modelBuilder.Entity("ClinicalAlert", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("AcknowledgedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("acknowledged_at");
+
+ b.Property("AcknowledgedBy")
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("acknowledged_by");
+
+ b.Property("AlertType")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("alert_type");
+
+ b.Property("Details")
+ .IsRequired()
+ .HasColumnType("text")
+ .HasColumnName("details");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("ObservationCode")
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("observation_code");
+
+ b.Property("ObservationId")
+ .HasColumnType("uuid")
+ .HasColumnName("observation_id");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("ResolvedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("resolved_at");
+
+ b.Property("Severity")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("severity");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'OPEN'");
+
+ b.Property("TriggeredAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("triggered_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "TriggeredAt");
+
+ b.HasIndex("PatientId", "TriggeredAt");
+
+ b.HasIndex("Severity", "TriggeredAt")
+ .HasFilter("status = 'OPEN'");
+
+ b.HasIndex("EncounterId", "AlertType", "ObservationCode")
+ .HasFilter("status IN ('OPEN', 'ESCALATED')");
+
+ b.ToTable("clinical_alerts", null, t =>
+ {
+ t.HasCheckConstraint("chk_clinical_alerts_alert_type", "alert_type IN ('SEPSIS_WARNING', 'CRITICAL_HEART_RATE', 'CRITICAL_TEMP_C', 'CRITICAL_POTASSIUM_MEQ_L', 'CRITICAL_SPO2', 'CRITICAL_RESP_RATE', 'CRITICAL_WBC_K_UL', 'CRITICAL_SYSTOLIC_BP', 'CRITICAL_DIASTOLIC_BP', 'CRITICAL_LACTATE_MMOL_L', 'CRITICAL_AVPU', 'CRITICAL_GLUCOSE_MG_DL', 'CRITICAL_PAO2_MMHG', 'CRITICAL_PLATELET_K_UL', 'CRITICAL_BILIRUBIN_MG_DL', 'CRITICAL_CREATININE_MG_DL', 'WARNING_HEART_RATE', 'WARNING_TEMP_C', 'WARNING_POTASSIUM_MEQ_L', 'WARNING_SPO2', 'WARNING_RESP_RATE', 'WARNING_WBC_K_UL', 'WARNING_SYSTOLIC_BP', 'WARNING_DIASTOLIC_BP', 'WARNING_LACTATE_MMOL_L', 'WARNING_GLUCOSE_MG_DL', 'WARNING_PAO2_MMHG', 'WARNING_PLATELET_K_UL', 'WARNING_BILIRUBIN_MG_DL', 'WARNING_CREATININE_MG_DL', 'NEWS2_WARNING', 'NEWS2_EMERGENCY', 'RAPID_DETERIORATION', 'QSOFA_WARNING', 'QSOFA_SCREEN', 'GCS_CRITICAL', 'GCS_WARNING', 'SOFA_SEPSIS', 'SOFA_WARNING')");
+
+ t.HasCheckConstraint("chk_clinical_alerts_severity", "severity IN ('WARNING', 'CRITICAL')");
+
+ t.HasCheckConstraint("chk_clinical_alerts_status", "status IN ('OPEN', 'ACKNOWLEDGED', 'RESOLVED', 'ESCALATED')");
+ });
+ });
+
+ modelBuilder.Entity("ClinicalAuditLog", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("Action")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("action");
+
+ b.Property("CorrelationId")
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("correlation_id");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("EntityId")
+ .HasColumnType("uuid")
+ .HasColumnName("entity_id");
+
+ b.Property("EntityType")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("entity_type");
+
+ b.Property("IpAddress")
+ .HasMaxLength(45)
+ .HasColumnType("character varying(45)")
+ .HasColumnName("ip_address");
+
+ b.Property("NewValueJson")
+ .HasColumnType("jsonb")
+ .HasColumnName("new_value_json");
+
+ b.Property("PreviousValueJson")
+ .HasColumnType("jsonb")
+ .HasColumnName("previous_value_json");
+
+ b.Property("Reason")
+ .HasColumnType("text")
+ .HasColumnName("reason");
+
+ b.Property("UserDisplayName")
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("user_display_name");
+
+ b.Property("UserId")
+ .HasColumnType("uuid")
+ .HasColumnName("user_id");
+
+ b.HasKey("Id");
+
+ b.HasIndex("CreatedAt");
+
+ b.HasIndex("EntityId");
+
+ b.HasIndex("EntityType");
+
+ b.HasIndex("UserId");
+
+ b.ToTable("clinical_audit_logs", (string)null);
+ });
+
+ modelBuilder.Entity("ClinicalUser", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("DisplayName")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("display_name");
+
+ b.Property("IsActive")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("boolean")
+ .HasDefaultValue(true)
+ .HasColumnName("is_active");
+
+ b.Property("LastLoginAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("last_login_at");
+
+ b.Property("PasswordHash")
+ .IsRequired()
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("password_hash");
+
+ b.Property("Role")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("role");
+
+ b.Property("Username")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("username");
+
+ b.HasKey("Id");
+
+ b.HasIndex("Username")
+ .IsUnique();
+
+ b.ToTable("clinical_users", (string)null);
+ });
+
+ modelBuilder.Entity("Encounter", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("AdmissionReason")
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("admission_reason");
+
+ b.Property("AdmittedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("admitted_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("AttendingPhysician")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("attending_physician");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("Department")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("department");
+
+ b.Property("DischargeDiagnosis")
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("discharge_diagnosis");
+
+ b.Property("DischargedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("discharged_at");
+
+ b.Property("EncounterType")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("encounter_type");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("RoomBed")
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("room_bed");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'SCHEDULED'");
+
+ b.HasKey("Id");
+
+ b.HasIndex("PatientId", "AdmittedAt");
+
+ b.HasIndex("Status", "AdmittedAt")
+ .HasFilter("status = 'ACTIVE'");
+
+ b.ToTable("encounters", null, t =>
+ {
+ t.HasCheckConstraint("chk_encounters_department", "department IN ('ICU', 'GENERAL_MEDICINE', 'EMERGENCY', 'CARDIOLOGY', 'SURGERY', 'PEDIATRICS')");
+
+ t.HasCheckConstraint("chk_encounters_encounter_type", "encounter_type IN ('INPATIENT', 'OUTPATIENT', 'EMERGENCY')");
+
+ t.HasCheckConstraint("chk_encounters_status", "status IN ('SCHEDULED', 'ACTIVE', 'DISCHARGED', 'CANCELLED')");
+ });
+ });
+
+ modelBuilder.Entity("ExternalResourceIdentifier", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("InternalId")
+ .HasColumnType("uuid")
+ .HasColumnName("internal_id");
+
+ b.Property("ResourceType")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("resource_type");
+
+ b.Property("System")
+ .IsRequired()
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("system");
+
+ b.Property("Value")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("value");
+
+ b.HasKey("Id");
+
+ b.HasIndex("ResourceType", "InternalId");
+
+ b.HasIndex("ResourceType", "System", "Value")
+ .IsUnique();
+
+ b.ToTable("external_resource_identifiers", (string)null);
+ });
+
+ modelBuilder.Entity("GcsScore", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CalculatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("calculated_at");
+
+ b.Property("Classification")
+ .IsRequired()
+ .HasMaxLength(16)
+ .HasColumnType("character varying(16)")
+ .HasColumnName("classification");
+
+ b.Property("CreatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("EyeScore")
+ .HasColumnType("integer")
+ .HasColumnName("eye_score");
+
+ b.Property("MotorScore")
+ .HasColumnType("integer")
+ .HasColumnName("motor_score");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("TotalScore")
+ .HasColumnType("integer")
+ .HasColumnName("total_score");
+
+ b.Property("VerbalScore")
+ .HasColumnType("integer")
+ .HasColumnName("verbal_score");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "CalculatedAt");
+
+ b.ToTable("gcs_scores", null, t =>
+ {
+ t.HasCheckConstraint("chk_gcs_scores_classification", "classification IN ('MILD', 'MODERATE', 'SEVERE')");
+ });
+ });
+
+ modelBuilder.Entity("MedicationAdministration", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("AdministeredAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("administered_at");
+
+ b.Property("AdministeredBy")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("administered_by");
+
+ b.Property("Dose")
+ .HasPrecision(10, 4)
+ .HasColumnType("numeric(10,4)")
+ .HasColumnName("dose");
+
+ b.Property("DoseUnit")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("dose_unit");
+
+ b.Property("DrugName")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("drug_name");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("Route")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("route");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "AdministeredAt");
+
+ b.HasIndex("EncounterId", "DrugName");
+
+ b.ToTable("medication_administrations", (string)null);
+ });
+
+ modelBuilder.Entity("News2Score", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CalculatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("calculated_at");
+
+ b.Property("ConsciousnessScore")
+ .HasColumnType("integer")
+ .HasColumnName("consciousness_score");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("HasSingleParamThree")
+ .HasColumnType("boolean")
+ .HasColumnName("has_single_param_three");
+
+ b.Property("HeartRateScore")
+ .HasColumnType("integer")
+ .HasColumnName("heart_rate_score");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("RespRateScore")
+ .HasColumnType("integer")
+ .HasColumnName("resp_rate_score");
+
+ b.Property("RiskLevel")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("risk_level");
+
+ b.Property("Spo2Score")
+ .HasColumnType("integer")
+ .HasColumnName("spo2_score");
+
+ b.Property("SupplementalO2Score")
+ .HasColumnType("integer")
+ .HasColumnName("supplemental_o2_score");
+
+ b.Property("SystolicBpScore")
+ .HasColumnType("integer")
+ .HasColumnName("systolic_bp_score");
+
+ b.Property("TemperatureScore")
+ .HasColumnType("integer")
+ .HasColumnName("temperature_score");
+
+ b.Property("TotalScore")
+ .HasColumnType("integer")
+ .HasColumnName("total_score");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "CalculatedAt");
+
+ b.HasIndex("PatientId", "CalculatedAt");
+
+ b.ToTable("news2_scores", null, t =>
+ {
+ t.HasCheckConstraint("chk_news2_scores_risk_level", "risk_level IN ('LOW', 'LOW_MEDIUM', 'MEDIUM', 'HIGH')");
+ });
+ });
+
+ modelBuilder.Entity("Observation", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("IdempotencyKey")
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("idempotency_key");
+
+ b.Property("ObservationCode")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("observation_code");
+
+ b.Property("RecordedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("recorded_at");
+
+ b.Property("Source")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("source")
+ .HasDefaultValueSql("'MANUAL'");
+
+ b.Property("Unit")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("unit");
+
+ b.Property("Value")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("value");
+
+ b.HasKey("Id");
+
+ b.HasIndex("IdempotencyKey")
+ .IsUnique()
+ .HasFilter("idempotency_key IS NOT NULL");
+
+ b.HasIndex("EncounterId", "ObservationCode", "RecordedAt");
+
+ b.ToTable("observations", null, t =>
+ {
+ t.HasCheckConstraint("chk_observations_source", "source IN ('MANUAL', 'DEVICE', 'LAB')");
+ });
+ });
+
+ modelBuilder.Entity("Order", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("Description")
+ .IsRequired()
+ .HasColumnType("text")
+ .HasColumnName("description");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("OrderType")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("order_type");
+
+ b.Property("OrderedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("ordered_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("OrderedBy")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("ordered_by");
+
+ b.Property("ResultSummary")
+ .HasColumnType("text")
+ .HasColumnName("result_summary");
+
+ b.Property("ResultedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("resulted_at");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'PENDING'");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "OrderedAt");
+
+ b.HasIndex("Status", "OrderedAt")
+ .HasFilter("status IN ('PENDING', 'IN_PROGRESS')");
+
+ b.ToTable("orders", null, t =>
+ {
+ t.HasCheckConstraint("chk_orders_order_type", "order_type IN ('LAB', 'IMAGING', 'MEDICATION', 'PROCEDURE')");
+
+ t.HasCheckConstraint("chk_orders_status", "status IN ('PENDING', 'IN_PROGRESS', 'RESULTED', 'CANCELLED')");
+ });
+ });
+
+ modelBuilder.Entity("OutboxEvent", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("FailedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("failed_at");
+
+ b.Property("LastError")
+ .HasColumnType("text")
+ .HasColumnName("last_error");
+
+ b.Property("PartitionKey")
+ .HasMaxLength(36)
+ .HasColumnType("character varying(36)")
+ .HasColumnName("partition_key");
+
+ b.Property("Payload")
+ .IsRequired()
+ .HasColumnType("jsonb")
+ .HasColumnName("payload");
+
+ b.Property("ProcessedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("processed_at");
+
+ b.Property("RetryCount")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("integer")
+ .HasDefaultValue(0)
+ .HasColumnName("retry_count");
+
+ b.Property("Topic")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("topic");
+
+ b.HasKey("Id");
+
+ b.HasIndex("CreatedAt")
+ .HasFilter("processed_at IS NULL AND failed_at IS NULL");
+
+ b.ToTable("outbox_events", (string)null);
+ });
+
+ modelBuilder.Entity("Patient", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("Allergies")
+ .HasColumnType("text")
+ .HasColumnName("allergies");
+
+ b.Property("BloodType")
+ .HasMaxLength(5)
+ .HasColumnType("character varying(5)")
+ .HasColumnName("blood_type");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("DateOfBirth")
+ .IsRequired()
+ .HasColumnType("text")
+ .HasColumnName("date_of_birth");
+
+ b.Property("EmergencyContactName")
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("emergency_contact_name");
+
+ b.Property("EmergencyContactPhone")
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("emergency_contact_phone");
+
+ b.Property("FirstName")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("first_name");
+
+ b.Property("Gender")
+ .IsRequired()
+ .HasMaxLength(10)
+ .HasColumnType("character varying(10)")
+ .HasColumnName("gender");
+
+ b.Property("LastName")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("last_name");
+
+ b.Property("Mrn")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("mrn");
+
+ b.Property("NameSearchToken")
+ .HasMaxLength(64)
+ .HasColumnType("character varying(64)")
+ .HasColumnName("name_search_token");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasDefaultValue("active")
+ .HasColumnName("status");
+
+ b.HasKey("Id");
+
+ b.HasIndex("Mrn")
+ .IsUnique();
+
+ b.HasIndex("NameSearchToken");
+
+ b.ToTable("patients", (string)null);
+ });
+
+ modelBuilder.Entity("ReconciliationAlert", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CheckType")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("check_type");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("Details")
+ .IsRequired()
+ .HasColumnType("text")
+ .HasColumnName("details");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("ResolvedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("resolved_at");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId");
+
+ b.HasIndex("PatientId");
+
+ b.HasIndex("CheckType", "EncounterId")
+ .HasFilter("resolved_at IS NULL");
+
+ b.ToTable("reconciliation_alerts", null, t =>
+ {
+ t.HasCheckConstraint("chk_reconciliation_alerts_check_type", "check_type IN ('UNACKNOWLEDGED_CRITICAL_ALERT', 'PENDING_ORDER_NO_RESULT', 'ACTIVE_INPATIENT_NO_OBSERVATION')");
+ });
+ });
+
+ modelBuilder.Entity("SepsisBundle", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CompletedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("completed_at");
+
+ b.Property("ComplianceStatus")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("compliance_status")
+ .HasDefaultValueSql("'IN_PROGRESS'");
+
+ b.Property("DeadlineAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("deadline_at");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("RecognizedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("recognized_at");
+
+ b.Property("TriggeringAlertId")
+ .HasColumnType("uuid")
+ .HasColumnName("triggering_alert_id");
+
+ b.Property("TriggeringAlertType")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("triggering_alert_type");
+
+ b.HasKey("Id");
+
+ b.HasIndex("ComplianceStatus");
+
+ b.HasIndex("TriggeringAlertId");
+
+ b.HasIndex("EncounterId", "RecognizedAt");
+
+ b.ToTable("sepsis_bundles", null, t =>
+ {
+ t.HasCheckConstraint("chk_sepsis_bundles_compliance_status", "compliance_status IN ('IN_PROGRESS', 'COMPLIANT', 'NON_COMPLIANT')");
+ });
+ });
+
+ modelBuilder.Entity("SepsisBundleElement", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("BundleId")
+ .HasColumnType("uuid")
+ .HasColumnName("bundle_id");
+
+ b.Property("CompletedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("completed_at");
+
+ b.Property("ElementType")
+ .IsRequired()
+ .HasMaxLength(40)
+ .HasColumnType("character varying(40)")
+ .HasColumnName("element_type");
+
+ b.Property("OrderId")
+ .HasColumnType("uuid")
+ .HasColumnName("order_id");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'PENDING'");
+
+ b.HasKey("Id");
+
+ b.HasIndex("OrderId");
+
+ b.HasIndex("BundleId", "ElementType")
+ .IsUnique();
+
+ b.ToTable("sepsis_bundle_elements", null, t =>
+ {
+ t.HasCheckConstraint("chk_sepsis_bundle_elements_element_type", "element_type IN ('BLOOD_CULTURES', 'SERUM_LACTATE', 'BROAD_SPECTRUM_ANTIBIOTICS', 'IV_FLUID_RESUSCITATION')");
+
+ t.HasCheckConstraint("chk_sepsis_bundle_elements_status", "status IN ('PENDING', 'COMPLETED')");
+ });
+ });
+
+ modelBuilder.Entity("SofaScore", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CalculatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("calculated_at");
+
+ b.Property("CardiovascularScore")
+ .HasColumnType("integer")
+ .HasColumnName("cardiovascular_score");
+
+ b.Property("CnsScore")
+ .HasColumnType("integer")
+ .HasColumnName("cns_score");
+
+ b.Property("CoagulationScore")
+ .HasColumnType("integer")
+ .HasColumnName("coagulation_score");
+
+ b.Property("CreatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at");
+
+ b.Property("DeltaFromBaseline")
+ .HasColumnType("integer")
+ .HasColumnName("delta_from_baseline");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("IsBaseline")
+ .HasColumnType("boolean")
+ .HasColumnName("is_baseline");
+
+ b.Property("LiverScore")
+ .HasColumnType("integer")
+ .HasColumnName("liver_score");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("RenalScore")
+ .HasColumnType("integer")
+ .HasColumnName("renal_score");
+
+ b.Property("RespiratoryScore")
+ .HasColumnType("integer")
+ .HasColumnName("respiratory_score");
+
+ b.Property("StalenessFlags")
+ .HasColumnType("jsonb")
+ .HasColumnName("staleness_flags");
+
+ b.Property("TotalScore")
+ .HasColumnType("integer")
+ .HasColumnName("total_score");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId")
+ .HasDatabaseName("idx_sofa_scores_baseline")
+ .HasFilter("is_baseline = true");
+
+ b.HasIndex("EncounterId", "CalculatedAt");
+
+ b.ToTable("sofa_scores", (string)null);
+ });
+
+ modelBuilder.Entity("ClinicalAlert", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany("Alerts")
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("Encounter", b =>
+ {
+ b.HasOne("Patient", "Patient")
+ .WithMany("Encounters")
+ .HasForeignKey("PatientId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Patient");
+ });
+
+ modelBuilder.Entity("GcsScore", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("MedicationAdministration", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("News2Score", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("Observation", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany("Observations")
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("Order", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany("Orders")
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("ReconciliationAlert", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.SetNull);
+
+ b.HasOne("Patient", "Patient")
+ .WithMany()
+ .HasForeignKey("PatientId")
+ .OnDelete(DeleteBehavior.SetNull);
+
+ b.Navigation("Encounter");
+
+ b.Navigation("Patient");
+ });
+
+ modelBuilder.Entity("SepsisBundle", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.HasOne("ClinicalAlert", "TriggeringAlert")
+ .WithMany()
+ .HasForeignKey("TriggeringAlertId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+
+ b.Navigation("TriggeringAlert");
+ });
+
+ modelBuilder.Entity("SepsisBundleElement", b =>
+ {
+ b.HasOne("SepsisBundle", "Bundle")
+ .WithMany("Elements")
+ .HasForeignKey("BundleId")
+ .OnDelete(DeleteBehavior.Cascade)
+ .IsRequired();
+
+ b.HasOne("Order", "Order")
+ .WithMany()
+ .HasForeignKey("OrderId")
+ .OnDelete(DeleteBehavior.SetNull);
+
+ b.Navigation("Bundle");
+
+ b.Navigation("Order");
+ });
+
+ modelBuilder.Entity("SofaScore", b =>
+ {
+ b.HasOne("Encounter", "Encounter")
+ .WithMany()
+ .HasForeignKey("EncounterId")
+ .OnDelete(DeleteBehavior.Restrict)
+ .IsRequired();
+
+ b.Navigation("Encounter");
+ });
+
+ modelBuilder.Entity("Encounter", b =>
+ {
+ b.Navigation("Alerts");
+
+ b.Navigation("Observations");
+
+ b.Navigation("Orders");
+ });
+
+ modelBuilder.Entity("Patient", b =>
+ {
+ b.Navigation("Encounters");
+ });
+
+ modelBuilder.Entity("SepsisBundle", b =>
+ {
+ b.Navigation("Elements");
+ });
+#pragma warning restore 612, 618
+ }
+ }
+}
diff --git a/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.cs b/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.cs
new file mode 100644
index 0000000..0285bd3
--- /dev/null
+++ b/VigilCareClinicalAPI/Migrations/20260622130402_AddPatientNameSearchToken.cs
@@ -0,0 +1,55 @@
+using System;
+using Microsoft.EntityFrameworkCore.Migrations;
+
+#nullable disable
+
+namespace VigilCareClinicalAPI.Migrations
+{
+ ///
+ public partial class AddPatientNameSearchToken : Migration
+ {
+ ///
+ protected override void Up(MigrationBuilder migrationBuilder)
+ {
+ migrationBuilder.AlterColumn(
+ name: "date_of_birth",
+ table: "patients",
+ type: "text",
+ nullable: false,
+ oldClrType: typeof(DateOnly),
+ oldType: "date");
+
+ migrationBuilder.AddColumn(
+ name: "name_search_token",
+ table: "patients",
+ type: "character varying(64)",
+ maxLength: 64,
+ nullable: true);
+
+ migrationBuilder.CreateIndex(
+ name: "IX_patients_name_search_token",
+ table: "patients",
+ column: "name_search_token");
+ }
+
+ ///
+ protected override void Down(MigrationBuilder migrationBuilder)
+ {
+ migrationBuilder.DropIndex(
+ name: "IX_patients_name_search_token",
+ table: "patients");
+
+ migrationBuilder.DropColumn(
+ name: "name_search_token",
+ table: "patients");
+
+ migrationBuilder.AlterColumn(
+ name: "date_of_birth",
+ table: "patients",
+ type: "date",
+ nullable: false,
+ oldClrType: typeof(string),
+ oldType: "text");
+ }
+ }
+}
diff --git a/VigilCareClinicalAPI/Migrations/20260622130927_AddPhiAccessLogs.Designer.cs b/VigilCareClinicalAPI/Migrations/20260622130927_AddPhiAccessLogs.Designer.cs
new file mode 100644
index 0000000..53b6a8a
--- /dev/null
+++ b/VigilCareClinicalAPI/Migrations/20260622130927_AddPhiAccessLogs.Designer.cs
@@ -0,0 +1,1361 @@
+//
+using System;
+using Microsoft.EntityFrameworkCore;
+using Microsoft.EntityFrameworkCore.Infrastructure;
+using Microsoft.EntityFrameworkCore.Migrations;
+using Microsoft.EntityFrameworkCore.Storage.ValueConversion;
+using Npgsql.EntityFrameworkCore.PostgreSQL.Metadata;
+
+#nullable disable
+
+namespace VigilCareClinicalAPI.Migrations
+{
+ [DbContext(typeof(AppDbContext))]
+ [Migration("20260622130927_AddPhiAccessLogs")]
+ partial class AddPhiAccessLogs
+ {
+ ///
+ protected override void BuildTargetModel(ModelBuilder modelBuilder)
+ {
+#pragma warning disable 612, 618
+ modelBuilder
+ .HasAnnotation("ProductVersion", "8.0.4")
+ .HasAnnotation("Relational:MaxIdentifierLength", 63);
+
+ NpgsqlModelBuilderExtensions.UseIdentityByDefaultColumns(modelBuilder);
+
+ modelBuilder.Entity("AlertThreshold", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("CriticalHigh")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("critical_high");
+
+ b.Property("CriticalLow")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("critical_low");
+
+ b.Property("DisplayName")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("display_name");
+
+ b.Property("ObservationCode")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("observation_code");
+
+ b.Property("SuppressionWindowMinutes")
+ .HasColumnType("integer")
+ .HasColumnName("suppression_window_minutes");
+
+ b.Property("Unit")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("unit");
+
+ b.Property("WarningHigh")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("warning_high");
+
+ b.Property("WarningLow")
+ .HasColumnType("decimal(10,3)")
+ .HasColumnName("warning_low");
+
+ b.HasKey("Id");
+
+ b.HasIndex("ObservationCode")
+ .IsUnique();
+
+ b.ToTable("alert_thresholds", (string)null);
+ });
+
+ modelBuilder.Entity("ClinicalAlert", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("AcknowledgedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("acknowledged_at");
+
+ b.Property("AcknowledgedBy")
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("acknowledged_by");
+
+ b.Property("AlertType")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("alert_type");
+
+ b.Property("Details")
+ .IsRequired()
+ .HasColumnType("text")
+ .HasColumnName("details");
+
+ b.Property("EncounterId")
+ .HasColumnType("uuid")
+ .HasColumnName("encounter_id");
+
+ b.Property("ObservationCode")
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("observation_code");
+
+ b.Property("ObservationId")
+ .HasColumnType("uuid")
+ .HasColumnName("observation_id");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("ResolvedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("resolved_at");
+
+ b.Property("Severity")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("severity");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'OPEN'");
+
+ b.Property("TriggeredAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("triggered_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.HasKey("Id");
+
+ b.HasIndex("EncounterId", "TriggeredAt");
+
+ b.HasIndex("PatientId", "TriggeredAt");
+
+ b.HasIndex("Severity", "TriggeredAt")
+ .HasFilter("status = 'OPEN'");
+
+ b.HasIndex("EncounterId", "AlertType", "ObservationCode")
+ .HasFilter("status IN ('OPEN', 'ESCALATED')");
+
+ b.ToTable("clinical_alerts", null, t =>
+ {
+ t.HasCheckConstraint("chk_clinical_alerts_alert_type", "alert_type IN ('SEPSIS_WARNING', 'CRITICAL_HEART_RATE', 'CRITICAL_TEMP_C', 'CRITICAL_POTASSIUM_MEQ_L', 'CRITICAL_SPO2', 'CRITICAL_RESP_RATE', 'CRITICAL_WBC_K_UL', 'CRITICAL_SYSTOLIC_BP', 'CRITICAL_DIASTOLIC_BP', 'CRITICAL_LACTATE_MMOL_L', 'CRITICAL_AVPU', 'CRITICAL_GLUCOSE_MG_DL', 'CRITICAL_PAO2_MMHG', 'CRITICAL_PLATELET_K_UL', 'CRITICAL_BILIRUBIN_MG_DL', 'CRITICAL_CREATININE_MG_DL', 'WARNING_HEART_RATE', 'WARNING_TEMP_C', 'WARNING_POTASSIUM_MEQ_L', 'WARNING_SPO2', 'WARNING_RESP_RATE', 'WARNING_WBC_K_UL', 'WARNING_SYSTOLIC_BP', 'WARNING_DIASTOLIC_BP', 'WARNING_LACTATE_MMOL_L', 'WARNING_GLUCOSE_MG_DL', 'WARNING_PAO2_MMHG', 'WARNING_PLATELET_K_UL', 'WARNING_BILIRUBIN_MG_DL', 'WARNING_CREATININE_MG_DL', 'NEWS2_WARNING', 'NEWS2_EMERGENCY', 'RAPID_DETERIORATION', 'QSOFA_WARNING', 'QSOFA_SCREEN', 'GCS_CRITICAL', 'GCS_WARNING', 'SOFA_SEPSIS', 'SOFA_WARNING')");
+
+ t.HasCheckConstraint("chk_clinical_alerts_severity", "severity IN ('WARNING', 'CRITICAL')");
+
+ t.HasCheckConstraint("chk_clinical_alerts_status", "status IN ('OPEN', 'ACKNOWLEDGED', 'RESOLVED', 'ESCALATED')");
+ });
+ });
+
+ modelBuilder.Entity("ClinicalAuditLog", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("Action")
+ .IsRequired()
+ .HasMaxLength(50)
+ .HasColumnType("character varying(50)")
+ .HasColumnName("action");
+
+ b.Property("CorrelationId")
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("correlation_id");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("EntityId")
+ .HasColumnType("uuid")
+ .HasColumnName("entity_id");
+
+ b.Property("EntityType")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("entity_type");
+
+ b.Property("IpAddress")
+ .HasMaxLength(45)
+ .HasColumnType("character varying(45)")
+ .HasColumnName("ip_address");
+
+ b.Property("NewValueJson")
+ .HasColumnType("jsonb")
+ .HasColumnName("new_value_json");
+
+ b.Property("PreviousValueJson")
+ .HasColumnType("jsonb")
+ .HasColumnName("previous_value_json");
+
+ b.Property("Reason")
+ .HasColumnType("text")
+ .HasColumnName("reason");
+
+ b.Property("UserDisplayName")
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("user_display_name");
+
+ b.Property("UserId")
+ .HasColumnType("uuid")
+ .HasColumnName("user_id");
+
+ b.HasKey("Id");
+
+ b.HasIndex("CreatedAt");
+
+ b.HasIndex("EntityId");
+
+ b.HasIndex("EntityType");
+
+ b.HasIndex("UserId");
+
+ b.ToTable("clinical_audit_logs", (string)null);
+ });
+
+ modelBuilder.Entity("ClinicalUser", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("DisplayName")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("display_name");
+
+ b.Property("IsActive")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("boolean")
+ .HasDefaultValue(true)
+ .HasColumnName("is_active");
+
+ b.Property("LastLoginAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("last_login_at");
+
+ b.Property("PasswordHash")
+ .IsRequired()
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("password_hash");
+
+ b.Property("Role")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("role");
+
+ b.Property("Username")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("username");
+
+ b.HasKey("Id");
+
+ b.HasIndex("Username")
+ .IsUnique();
+
+ b.ToTable("clinical_users", (string)null);
+ });
+
+ modelBuilder.Entity("Encounter", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("AdmissionReason")
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("admission_reason");
+
+ b.Property("AdmittedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("admitted_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("AttendingPhysician")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("attending_physician");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("Department")
+ .IsRequired()
+ .HasMaxLength(100)
+ .HasColumnType("character varying(100)")
+ .HasColumnName("department");
+
+ b.Property("DischargeDiagnosis")
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("discharge_diagnosis");
+
+ b.Property("DischargedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("discharged_at");
+
+ b.Property("EncounterType")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("encounter_type");
+
+ b.Property("PatientId")
+ .HasColumnType("uuid")
+ .HasColumnName("patient_id");
+
+ b.Property("RoomBed")
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("room_bed");
+
+ b.Property("Status")
+ .IsRequired()
+ .ValueGeneratedOnAdd()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("status")
+ .HasDefaultValueSql("'SCHEDULED'");
+
+ b.HasKey("Id");
+
+ b.HasIndex("PatientId", "AdmittedAt");
+
+ b.HasIndex("Status", "AdmittedAt")
+ .HasFilter("status = 'ACTIVE'");
+
+ b.ToTable("encounters", null, t =>
+ {
+ t.HasCheckConstraint("chk_encounters_department", "department IN ('ICU', 'GENERAL_MEDICINE', 'EMERGENCY', 'CARDIOLOGY', 'SURGERY', 'PEDIATRICS')");
+
+ t.HasCheckConstraint("chk_encounters_encounter_type", "encounter_type IN ('INPATIENT', 'OUTPATIENT', 'EMERGENCY')");
+
+ t.HasCheckConstraint("chk_encounters_status", "status IN ('SCHEDULED', 'ACTIVE', 'DISCHARGED', 'CANCELLED')");
+ });
+ });
+
+ modelBuilder.Entity("ExternalResourceIdentifier", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CreatedAt")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("created_at")
+ .HasDefaultValueSql("NOW()");
+
+ b.Property("InternalId")
+ .HasColumnType("uuid")
+ .HasColumnName("internal_id");
+
+ b.Property("ResourceType")
+ .IsRequired()
+ .HasMaxLength(20)
+ .HasColumnType("character varying(20)")
+ .HasColumnName("resource_type");
+
+ b.Property("System")
+ .IsRequired()
+ .HasMaxLength(500)
+ .HasColumnType("character varying(500)")
+ .HasColumnName("system");
+
+ b.Property("Value")
+ .IsRequired()
+ .HasMaxLength(200)
+ .HasColumnType("character varying(200)")
+ .HasColumnName("value");
+
+ b.HasKey("Id");
+
+ b.HasIndex("ResourceType", "InternalId");
+
+ b.HasIndex("ResourceType", "System", "Value")
+ .IsUnique();
+
+ b.ToTable("external_resource_identifiers", (string)null);
+ });
+
+ modelBuilder.Entity("GcsScore", b =>
+ {
+ b.Property("Id")
+ .ValueGeneratedOnAdd()
+ .HasColumnType("uuid")
+ .HasColumnName("id")
+ .HasDefaultValueSql("gen_random_uuid()");
+
+ b.Property("CalculatedAt")
+ .HasColumnType("timestamp with time zone")
+ .HasColumnName("calculated_at");
+
+ b.Property