{
  "ok": true,
  "scope": "MaxArc Impact Platform - country rollout, facility readiness, low-bandwidth, and offline-operations readiness foundation (Task-010)",
  "notice": "Synthetic, non-identifiable sample data only. No real country, facility, infrastructure, staffing, or patient data. This module assesses country, region, facility, infrastructure, connectivity, governance, staffing, training, and module readiness before platform capabilities are activated. AI is assistive only and never approves or activates a deployment. Offline capability is a controlled deployment mode, not an excuse to bypass security: authorization, minimum-necessary access, and immutable audit remain active offline. Deployment recommendations require authorized human approval. This is not a full EHR and remains separate from MaxTrax EHR and the Medical Library.",
  "summary": {
    "countriesAssessed": 3,
    "regionsAssessed": 3,
    "facilitiesAssessed": 5,
    "rolloutWaves": 2,
    "facilitiesReady": 2,
    "facilitiesConditionallyReady": 1,
    "facilitiesNotReady": 2,
    "offlineRequiredSites": 3,
    "lowBandwidthSites": 3,
    "powerRiskSites": 3,
    "deviceAndInfrastructureGaps": 3,
    "trainingGaps": 3,
    "governanceAndPrivacyGaps": 2,
    "dataResidencyRestrictedCountries": 2,
    "integrationGaps": 2,
    "aiGovernanceGaps": 2,
    "openCorrectiveActions": 3,
    "overdueReadinessActions": 3,
    "highRiskDeploymentBlockers": 2,
    "prolongedOfflineSites": 2,
    "failedSyncSites": 2,
    "syncConflicts": 1,
    "evidenceCompleteness": 83,
    "byRecommendation": {
      "go": 2,
      "conditional-go": 1,
      "no-go": 2
    },
    "byCountry": {
      "CT-ANDT": 3,
      "CT-BENV": 1,
      "CT-CIRD": 1
    },
    "byFacilityLevel": {
      "national-referral": 1,
      "health-center": 2,
      "dispensary": 1,
      "district-hospital": 1
    },
    "byWave": {
      "WAVE-1": 4,
      "WAVE-2": 1
    },
    "byRisk": {
      "low": 2,
      "medium": 1,
      "high": 2
    },
    "boundaryReminder": {
      "impactDomain": "impact.maxarchealth.com",
      "impactPort": "3201",
      "medicalLibraryBoundary": "library.maxarchealth.com remains separate (port 3101, not used here)",
      "maxTraxEhrBoundary": "MaxTrax EHR remains separate; this is not a full EHR"
    }
  },
  "positioning": {
    "standaloneFirst": true,
    "integrationReady": true,
    "notAnEhr": true,
    "separateFromMaxTraxEhr": true,
    "offlineCapable": true,
    "offlineIsControlledModeNotSecurityBypass": true,
    "coversModules": [
      "fund-accountability",
      "stockpile-logistics",
      "lab-operations",
      "patient-continuity",
      "restricted-patient-locator",
      "asset-management",
      "program-performance",
      "ai-intelligence"
    ]
  },
  "offlinePosture": {
    "offlineIsControlledDeploymentMode": true,
    "authorizationPreservedOffline": true,
    "auditLoggingPreservedOffline": true,
    "minimumNecessaryAccessPreservedOffline": true,
    "queuedTransactionsCarryIdentityTimestampDeviceReconciliation": true,
    "conflictsNotSilentlyOverwritten": true,
    "synchronizationRequiresAuthenticatedAuditableReconciliation": true,
    "moduleSpecificPrivacyControlsRetainedOffline": true,
    "prolongedOfflineTriggersReview": true,
    "failedSynchronizationRemainsVisible": true,
    "dataLossDuplicateReplayStaleUnauthorizedDeviceFlagged": true,
    "localBackupAndRecoveryTracked": true,
    "deploymentRecommendationsRequireHumanApproval": true,
    "statement": "Offline capability is a controlled deployment mode, not an excuse to bypass security. Local operation preserves authorization, audit logging, and minimum-necessary access. Queued offline transactions carry identity, timestamp, source device, and reconciliation status. Conflicts are never silently overwritten; synchronization requires authenticated and auditable reconciliation. Patient, laboratory, financial, asset, and restricted-locator data retain module-specific privacy controls. Prolonged offline operation triggers review, failed synchronization stays visible, and data loss, duplicate submissions, replay, stale records, and unauthorized device use are flagged. Local backups and recovery status are tracked. Deployment recommendations require authorized human approval."
  },
  "privacyPosture": {
    "sampleDataSynthetic": true,
    "noIdentifiableData": true,
    "noPatientIdentityDisclosure": true,
    "noPreciseLocationDisclosure": true,
    "minimumNecessaryOnly": true,
    "dataResidencyRespected": true,
    "statement": "All data is synthetic and non-identifiable. Facility and site references are masked codes, not precise locations. Module-specific privacy and data-residency controls remain authoritative in every deployment mode, online or offline."
  },
  "governancePosture": {
    "deploymentRecommendationRequiresHumanApproval": true,
    "governancePrivacySecurityInfrastructureRequirementsNotWaivedByAi": true,
    "readinessEvidenceNotSilentlyModified": true,
    "deploymentBlockersNotSuppressed": true,
    "allActionsAuditable": true,
    "statement": "No country or facility is activated without authorized human approval. Governance, privacy, security, and infrastructure requirements cannot be waived by AI. Readiness evidence is never silently modified, deployment blockers are never suppressed, and every assessment, corrective action, recommendation, approval, escalation, and override is auditable."
  },
  "aiPosture": {
    "assists": [
      "identify readiness gaps",
      "prioritize facilities for remediation",
      "detect inconsistent readiness assessments",
      "identify likely deployment blockers",
      "estimate operational risk",
      "reconcile assessment evidence",
      "flag prolonged offline or failed-sync patterns",
      "identify training and staffing gaps",
      "suggest rollout sequencing",
      "summarize readiness evidence for authorized reviewers"
    ],
    "mustNot": [
      "autonomously approve deployment",
      "autonomously waive governance, privacy, security, or infrastructure requirements",
      "autonomously activate a country or facility",
      "autonomously change readiness evidence",
      "autonomously resolve synchronization conflicts",
      "autonomously disclose restricted data",
      "autonomously suppress deployment blockers",
      "bypass human approval or audit requirements"
    ],
    "statement": "AI is assistive only. It surfaces readiness gaps, blockers, and offline/sync risks and prioritizes remediation for authorized reviewers, but it never approves or activates a deployment, waives requirements, changes evidence, resolves sync conflicts, discloses restricted data, suppresses blockers, or bypasses human approval and audit."
  },
  "humanControls": {
    "deploymentRecommendationRequiresHumanApproval": true,
    "goLiveRequiresAuthorizedRole": true,
    "blockersRequireResolutionBeforeApproval": true,
    "syncConflictsRequireHumanReconciliation": true,
    "prolongedOfflineRequiresReview": true,
    "authorizedRoles": [
      "readiness-assessor",
      "rollout-governance-board",
      "ministry-rollout-authority",
      "implementation-partner-lead",
      "infrastructure-lead",
      "governance-privacy-officer",
      "auditor-read-only"
    ]
  },
  "boundary": {
    "impactDomain": "impact.maxarchealth.com",
    "impactPort": "3201",
    "medicalLibraryBoundary": "library.maxarchealth.com remains separate (port 3101, not used here)",
    "maxTraxEhrBoundary": "MaxTrax EHR remains separate; this is not a full EHR",
    "offlineBoundary": "offline is a controlled deployment mode; authorization, minimum-necessary access, and immutable audit remain active offline"
  },
  "modules": [
    {
      "id": "fund-accountability",
      "label": "Fund Accountability",
      "route": "/fund-accountability"
    },
    {
      "id": "stockpile-logistics",
      "label": "Stockpile & Logistics",
      "route": "/stockpile-logistics"
    },
    {
      "id": "lab-operations",
      "label": "Lab Operations",
      "route": "/lab-operations"
    },
    {
      "id": "patient-continuity",
      "label": "Patient Continuity",
      "route": "/patient-continuity",
      "privacyRestricted": true
    },
    {
      "id": "restricted-patient-locator",
      "label": "Restricted Patient Locator",
      "route": "/restricted-patient-locator",
      "privacyRestricted": true
    },
    {
      "id": "asset-management",
      "label": "Asset Management",
      "route": "/asset-management"
    },
    {
      "id": "program-performance",
      "label": "Program Performance",
      "route": "/program-performance"
    },
    {
      "id": "ai-intelligence",
      "label": "AI Intelligence",
      "route": "/ai-intelligence"
    }
  ],
  "routes": [
    "/country-rollout/countries",
    "/country-rollout/regions",
    "/country-rollout/facilities",
    "/country-rollout/waves",
    "/country-rollout/readiness-assessments",
    "/country-rollout/connectivity",
    "/country-rollout/offline-readiness",
    "/country-rollout/infrastructure",
    "/country-rollout/governance",
    "/country-rollout/training",
    "/country-rollout/integrations",
    "/country-rollout/corrective-actions",
    "/country-rollout/risk-signals",
    "/country-rollout/evidence",
    "/country-rollout/summary",
    "/country-rollout-dashboard"
  ]
}