assertion.me · fhir
assertion.me — personal health-record client
A single-user application, run by its owner, that reads the owner's own medical
records from patient-facing FHIR endpoints (SMART on FHIR, patient-access scope). It is not
offered to other patients, providers, or organizations.
What it does
- Authenticates as the patient through the health system's own patient portal (OAuth 2.0 /
SMART on FHIR). No credentials are stored by the application.
- Retrieves the patient's records (encounters, results, medications, documents) into local
storage on hardware the owner controls.
- Never writes to the health system's records.
Who it is for
The owner of this domain, for their own records only. There is no sign-up, no other users,
and no third party receives data.
Privacy
- Data is retrieved only at the owner's request and stored only on the owner's own,
encrypted devices.
- No analytics, no advertising, no data sales, no cloud storage, no sharing with anyone.
- Tokens are held in the operating system's secret store and can be revoked from the
patient portal at any time.
- Deleting the local store deletes every retrieved record.
Policies
Privacy policy · Terms of use
Contact
contact@assertion.me
Last updated 2026.09.08