| Required operating inputs | - Approved referral, service, location, scheduling, privacy, and clinical-escalation rules
- The patient-access record and qualified staff owner for clinical or eligibility exceptions
- Trigger, allowed payload, source and destination records, permissions, and idempotency rule
- Retry, timeout, duplicate, alert, recovery, audit, and rollback ownership
|
|---|
| Release acceptance test | Run one de-identified or synthetic specialist patient-access inquiry through the configured path and verify that one normal event and one duplicate or failed event produce the expected records, customer communication, owner alert, and recoverable state. Record the expected state, actual state, exception owner, and corrective action before release. |
|---|
| Stop condition | Do not release or continue the automated path when symptoms, urgency, referral eligibility, protected information, or care questions exceed the approved administrative workflow, or when the event contract, permission boundary, duplicate handling, failure alert, or recovery owner is undefined. Preserve the record and route the case to the named human owner. |
|---|
| Human boundary | Clinicians and authorized practice staff retain triage, diagnosis, treatment, eligibility, referral interpretation, and every patient-care decision. The configured system may support approved administrative access and coordination but cannot assess symptoms or recommend care. |
|---|