{
  "ok": true,
  "scope": "MaxArc Global Health Impact Platform — Interoperability, Data Exchange, Partner Integration, Consent, and Interface Governance (synthetic demonstration)",
  "notice": "Synthetic, non-identifiable demonstration data. This is a governance and review demonstration only — not a live integration engine, production API gateway, health information exchange, message broker, production FHIR/HL7 server, or live DHIS2/OpenLMIS/OpenLab/EMR/EHR/laboratory/ministry/funder/banking/identity/customs/logistics/regulatory integration, and not a real consent-management platform, real patient-data exchange, production webhook processor, or live data-export service. Simulation only: no outbound network calls, no inbound webhooks, no real OAuth/OIDC, no real API keys/certificates/tokens, no real message delivery, no real database writes, and no autonomous consent, data-sharing, or interface-activation approval are implemented.",
  "authorizedReviewOnlyLabel": "FOR GLOBAL FUND / CCM / AUTHORIZED PARTNER REVIEW ONLY",
  "permittedUse": "Authorized institutional review, governance demonstration, and interoperability-readiness discussion only. Not for production data exchange, live integration, real consent capture, or real message delivery.",
  "summary": {
    "totalInterfaces": 16,
    "pendingApprovals": 2,
    "blockedInterfaces": 1,
    "activeSyntheticInterfaces": 3,
    "retiredInterfaces": 1,
    "incompatibleVersions": 9,
    "unknownCompatibility": 2,
    "staleSchemas": 1,
    "unresolvedMappings": 2,
    "consentUnknown": 1,
    "consentExpired": 1,
    "consentWithdrawn": 1,
    "lawfulBasisPending": 1,
    "lawfulBasisRejected": 1,
    "minimumNecessaryFailed": 1,
    "minimumNecessaryPartial": 2,
    "privacyReviewsBlocked": 1,
    "privacyReviewsPending": 1,
    "securityReviewsBlocked": 1,
    "failedTests": 3,
    "partialTests": 4,
    "blockedTests": 2,
    "notTestedTests": 2,
    "deliveryFailures": 2,
    "missingAcknowledgements": 3,
    "retryBacklog": 2,
    "deadLetterRecords": 1,
    "duplicateCandidates": 3,
    "conflicts": 2,
    "unmatchedReconciliation": 3,
    "conflictingReconciliation": 1,
    "expiredAgreements": 1,
    "revokedAgreements": 1,
    "pendingAgreements": 1,
    "activeExceptions": 6,
    "expiredExceptions": 2,
    "overdueRemediation": 1,
    "ineffectiveRemediation": 1,
    "secondReviewQueue": 3,
    "separationOfDutiesConflicts": 26,
    "separationOfDutiesRules": 26,
    "integrationIncidents": 3,
    "partners": 11,
    "partnerAgreements": 11,
    "dataSharingAgreements": 3,
    "schemas": 16,
    "terminologyMappings": 9,
    "messageTypes": 10,
    "exchangeEvents": 8,
    "aiSignalCount": 12,
    "auditEvents": 22,
    "byModule": {
      "fund-accountability": 1,
      "stockpile-logistics": 1,
      "lab-operations": 1,
      "patient-continuity": 1,
      "restricted-patient-locator": 1,
      "asset-management": 1,
      "program-performance": 1,
      "ai-intelligence": 1,
      "country-rollout": 1,
      "authorized-review-room": 1,
      "executive-review-packet": 1,
      "identity-access-governance": 1,
      "data-quality-reconciliation": 1,
      "risk-incident-case-governance": 1,
      "policy-compliance-control-governance": 1,
      "service-reliability-continuity": 1
    },
    "byState": {
      "active-synthetic": 3,
      "approved": 2,
      "test-only": 2,
      "draft": 1,
      "pending-review": 1,
      "degraded": 1,
      "suspended": 1,
      "rejected": 1,
      "expired": 1,
      "superseded": 1,
      "retired": 1,
      "blocked": 1
    },
    "byPartner": {
      "PTN-FUND": 2,
      "PTN-WH": 1,
      "PTN-LAB": 1,
      "PTN-FAC": 2,
      "PTN-LOG": 1,
      "PTN-NP": 1,
      "PTN-TECH": 3,
      "PTN-MIN": 1,
      "PTN-AUD": 2,
      "PTN-REG": 2
    },
    "byCountry": {
      "country-alpha": 4,
      "country-beta": 3,
      "country-gamma": 2,
      "global": 2
    },
    "byOrganization": {
      "org-ministry": 1,
      "org-national-program": 1,
      "org-state-or-regional-authority": 1,
      "org-facility": 1,
      "org-laboratory": 1,
      "org-warehouse": 1,
      "org-logistics-partner": 1,
      "org-implementation-partner": 1,
      "org-funding-partner": 1,
      "org-audit-or-assurance-reviewer": 1,
      "org-authorized-technology-partner": 1
    },
    "byInterfaceType": {
      "api": 4,
      "message": 3,
      "file-batch": 3,
      "event-stream": 3,
      "reference-sync": 3
    },
    "byMessageType": {
      "fund-disbursement-summary": 1,
      "commodity-stock-status": 1,
      "lab-order-result": 1,
      "referral-followup": 1,
      "locator-request": 1,
      "asset-custody-update": 1,
      "program-indicator-report": 1,
      "ai-signal": 1,
      "rollout-readiness": 1,
      "evidence-reference": 1
    },
    "byClassification": {
      "financial-sensitive": 1,
      "operational": 6,
      "clinical-sensitive": 2,
      "restricted": 3,
      "programmatic": 3,
      "security-sensitive": 1
    },
    "byConsentState": {
      "consent-required": 2,
      "consent-not-required": 1,
      "consent-unknown": 1,
      "consent-expired": 1,
      "consent-withdrawn": 1
    },
    "byCompatibilityState": {
      "compatible": 13,
      "unknown": 2,
      "incompatible": 1
    },
    "byDeliveryState": {
      "delivered-synthetic": 5,
      "failed": 2,
      "pending": 1
    },
    "byReconciliationState": {
      "matched": 1,
      "partially-matched": 1,
      "unmatched": 1,
      "duplicate-candidate": 1,
      "conflicting": 1,
      "stale": 1,
      "missing-source": 1,
      "missing-target": 1,
      "blocked": 1,
      "pending-review": 1
    },
    "boundaryReminder": {
      "impactDomain": "impact.maxarchealth.com",
      "impactPort": "3201",
      "medicalLibraryBoundary": "library.maxarchealth.com remains separate (port 3101, not used here)",
      "maxTraxEhrBoundary": "MaxTrax EHR remains separate; this is not a full EHR"
    }
  },
  "positioning": {
    "isSyntheticGovernanceDemonstration": true,
    "isSimulationOnly": true,
    "isNotLiveIntegrationEngine": true,
    "isNotProductionApiGateway": true,
    "isNotHealthInformationExchange": true,
    "isNotMessageBroker": true,
    "isNotProductionFhirServer": true,
    "isNotProductionHl7Service": true,
    "isNotLiveExternalIntegration": true,
    "isNotRealConsentManagementPlatform": true,
    "isNotRealPatientDataExchange": true,
    "isNotProductionWebhookProcessor": true,
    "isNotLiveDataExportService": true,
    "isNotReplacementForAuthorizedIntegrationOrLegalReview": true,
    "noOutboundNetworkCalls": true,
    "noInboundWebhooks": true,
    "noRealOauthOidc": true,
    "noRealApiKeys": true,
    "noRealCertificates": true,
    "noRealTokens": true,
    "noRealPatientRecords": true,
    "noRealLaboratoryMessages": true,
    "noRealFinancialTransactions": true,
    "noRealCommodityOrders": true,
    "noRealFileUploads": true,
    "noRealFileDownloads": true,
    "noRealMessageDelivery": true,
    "noRealDatabaseWrites": true,
    "noAutonomousConsentApproval": true,
    "noAutonomousDataSharingApproval": true,
    "noAutonomousInterfaceActivation": true,
    "sourceModuleRecordsAuthoritative": true,
    "notAnEhr": true,
    "coversModules": [
      "fund-accountability",
      "stockpile-logistics",
      "lab-operations",
      "patient-continuity",
      "restricted-patient-locator",
      "asset-management",
      "program-performance",
      "ai-intelligence",
      "country-rollout",
      "authorized-review-room",
      "executive-review-packet",
      "identity-access-governance",
      "data-quality-reconciliation",
      "risk-incident-case-governance",
      "policy-compliance-control-governance",
      "service-reliability-continuity"
    ]
  },
  "interoperabilityPosture": {
    "statement": "Approved does not mean production-connected and active-synthetic does not mean live. Interface existence does not prove delivery; delivery does not prove receipt; receipt does not prove semantic correctness; acknowledgement does not prove reconciliation.",
    "approvedIsNotProductionConnected": true,
    "activeSyntheticIsNotLive": true,
    "interfaceExistenceDoesNotProveDelivery": true,
    "deliveryDoesNotProveReceipt": true,
    "receiptDoesNotProveSemanticCorrectness": true,
    "acknowledgementDoesNotProveReconciliation": true,
    "schemaValidityDoesNotProveDomainCorrectness": true,
    "mappingExistenceDoesNotProveMappingAccuracy": true,
    "successfulTestingDoesNotAuthorizeProductionActivation": true,
    "sourceSystemsRemainAuthoritative": true
  },
  "schemaVersionPosture": {
    "statement": "Schemas are versioned; superseded and incompatible versions remain visible; breaking changes require review; silent schema replacement is prohibited.",
    "schemasAreVersioned": true,
    "supersededVersionsRemainVisible": true,
    "incompatibleVersionsRemainVisible": true,
    "breakingChangesRequireReview": true,
    "silentSchemaReplacementProhibited": true,
    "unknownCompatibilityRemainsUnknown": true,
    "producerAndConsumerVersionsRemainDistinct": true,
    "mappingChangesRequireLinkedReviewEvents": true,
    "retiredVersionsNotRepresentedAsCurrent": true
  },
  "terminologyPosture": {
    "statement": "Mappings are synthetic governance examples, not authoritative clinical coding guidance and not legal or regulatory determinations.",
    "mappingsAreSyntheticGovernanceExamples": true,
    "notAuthoritativeClinicalCodingGuidance": true,
    "notLegalOrRegulatoryDetermination": true,
    "ambiguousMappingsRemainUnresolved": true,
    "oneToManyAndManyToOneRemainVisible": true,
    "deprecatedCodesRemainHistoricallyVisible": true,
    "aiSuggestionsRequireHumanTerminologyReview": true
  },
  "consentPrivacyPosture": {
    "statement": "This module does not collect real consent; consent status is synthetic. Consent does not override role restrictions and does not authorize unrestricted disclosure.",
    "doesNotCollectRealConsent": true,
    "consentStatusIsSynthetic": true,
    "consentDoesNotOverrideRoleRestrictions": true,
    "consentDoesNotAuthorizeUnrestrictedDisclosure": true,
    "withdrawnOrExpiredConsentNotActive": true,
    "unknownConsentRemainsUnknown": true,
    "lawfulBasisRequiresAuthorizedHumanReview": true,
    "privacyReviewDistinctFromSecurityReview": true,
    "minimumNecessaryDistinctFromConsent": true,
    "denialsDoNotRevealRestrictedRecordExistence": true,
    "noPatientIdentityOrPreciseLocation": true
  },
  "testingPosture": {
    "statement": "Missing evidence blocks a pass; later success does not erase prior failure; retests append history; passing tests do not authorize production activation.",
    "missingEvidenceBlocksPass": true,
    "laterSuccessDoesNotEraseFailure": true,
    "retestsAppendHistory": true,
    "passingTestsDoNotAuthorizeProductionActivation": true,
    "notTestedIsNotNotApplicable": true,
    "partialRemainsPartial": true,
    "blockedRemainsVisible": true
  },
  "exchangeEventPosture": {
    "statement": "No actual message is transmitted. Synthetic delivery status is not production delivery; successful delivery does not prove semantic acceptance.",
    "noActualMessageTransmitted": true,
    "syntheticDeliveryIsNotProductionDelivery": true,
    "successfulDeliveryDoesNotProveSemanticAcceptance": true,
    "retriesDoNotCreateSilentDuplicates": true,
    "duplicateCandidatesRemainVisible": true,
    "conflictsRequireHumanReviewedResolution": true,
    "deadLetterRecordsRemainVisible": true,
    "missingAcknowledgementsRemainVisible": true,
    "failedDeliveriesRemainVisible": true,
    "laterSuccessfulDeliveryDoesNotEraseEarlierFailures": true
  },
  "reconciliationPosture": {
    "statement": "Reconciliation is not silent overwriting; original values remain preserved; source and target values remain visible.",
    "notSilentOverwriting": true,
    "originalValuesPreserved": true,
    "sourceAndTargetValuesVisible": true,
    "correctedValuesRequireAttribution": true,
    "conflictingEvidenceRemainsVisible": true,
    "semanticReconciliationDistinctFromTransportSuccess": true,
    "highRiskCorrectionsRequireSecondReview": true
  },
  "partnerAgreementPosture": {
    "statement": "Agreement existence does not prove legal sufficiency; this module does not provide legal advice.",
    "existenceDoesNotProveLegalSufficiency": true,
    "doesNotProvideLegalAdvice": true,
    "expiredRevokedRejectedSupersededRemainVisible": true,
    "missingApprovalBlocksSyntheticActivation": true,
    "scopeDoesNotAuthorizeUnrestrictedExchange": true,
    "partnerSelfApprovalProhibited": true
  },
  "exceptionRemediationPosture": {
    "statement": "Exceptions are attributable, time-bound, approved, revocable, monitored, and audited; unapproved or expired exceptions are not active. Completion is distinct from effectiveness.",
    "exceptionsAttributableTimeBoundApprovedRevocableMonitoredAudited": true,
    "unapprovedOrExpiredExceptionsNotActive": true,
    "completionIsNotEffectiveness": true,
    "overdueRemediationRemainsVisible": true,
    "ineffectiveRemediationRemainsVisible": true
  },
  "separationOfDutiesPosture": {
    "statement": "Separation-of-duties violations remain blocked or pending, identify the violated rule, require reassignment/independent/second review, remain auditable, and are never silently overridden.",
    "violationsRemainBlockedOrPending": true,
    "violationsIdentifyRule": true,
    "violationsRequireReassignmentIndependentOrSecondReview": true,
    "violationsAuditable": true,
    "neverSilentlyOverridden": true
  },
  "auditPosture": {
    "statement": "Audit events are append-only synthetic governance records. Deletion is not an allowed governance control; source-module audit records remain authoritative. This is not a production cryptographic audit ledger.",
    "appendOnly": true,
    "interfaceVersionChangesRequireLinkedEvent": true,
    "schemaChangesRequireLinkedEvent": true,
    "mappingChangesRequireLinkedEvent": true,
    "agreementLifecycleRequiresLinkedEvent": true,
    "consentWithdrawalAndExpirationRequireLinkedEvent": true,
    "testExecutionAndRetestRequireLinkedEvent": true,
    "deliveryFailureAndRetryRequireLinkedEvent": true,
    "acknowledgementRequiresLinkedEvent": true,
    "duplicateIdentificationRequiresLinkedEvent": true,
    "conflictResolutionRequiresLinkedEvent": true,
    "reconciliationDecisionRequiresLinkedEvent": true,
    "exceptionApprovalAndExpirationRequireLinkedEvent": true,
    "remediationEffectivenessRequiresLinkedEvent": true,
    "interfaceSuspensionAndRetirementRequireLinkedEvent": true,
    "deletionNotAllowed": true,
    "sourceModuleAuditRecordsAuthoritative": true
  },
  "aiPosture": {
    "statement": "AI is assistive only. It may prioritize and summarize for authorized human reviewers, but never transmits, calls external systems, activates interfaces, approves agreements/consent, determines lawful basis, approves privacy/security reviews or terminology mappings, suppresses failures, silently resolves duplicates/conflicts, overwrites source records, fabricates acknowledgements/evidence, authorizes disclosure, notifies external parties, or bypasses human approval, evidence, expiration, revocation, separation of duties, or audit controls.",
    "assists": [
      "identify missing mappings",
      "identify incompatible versions",
      "flag stale schemas",
      "detect duplicate candidates",
      "identify missing acknowledgements",
      "prioritize failed deliveries",
      "compare source and target values",
      "identify unresolved reconciliation",
      "suggest terminology mappings for human review",
      "flag consent or authorization expiry",
      "identify minimum-necessary concerns",
      "identify overdue agreements and remediation",
      "recommend second review"
    ],
    "mustNot": [
      "transmit messages",
      "call external systems",
      "activate interfaces",
      "approve agreements",
      "approve consent",
      "determine lawful basis autonomously",
      "approve privacy or security reviews",
      "approve terminology mappings",
      "suppress failed deliveries",
      "silently resolve duplicates or conflicts",
      "overwrite source records",
      "fabricate acknowledgements or evidence",
      "authorize disclosure",
      "notify external parties",
      "bypass human approval, evidence, expiration, revocation, separation of duties, or audit controls"
    ]
  },
  "humanControls": {
    "interfaceActivationRequiresHumanApproval": true,
    "agreementApprovalRequiresHumanReview": true,
    "consentDeterminationRequiresHumanReview": true,
    "lawfulBasisRequiresAuthorizedHumanReview": true,
    "privacyAndSecurityReviewsRequireHumanApproval": true,
    "highRiskReconciliationRequiresSecondReview": true,
    "terminologyMappingRequiresHumanReview": true
  },
  "boundary": {
    "impactDomain": "impact.maxarchealth.com",
    "impactPort": "3201",
    "medicalLibraryBoundary": "library.maxarchealth.com remains separate (port 3101, not used here)",
    "maxTraxEhrBoundary": "MaxTrax EHR remains separate; this is not a full EHR and implements no live integration or real database mutation.",
    "noInfrastructureBoundary": "No Apache, PM2, systemd, firewall, DNS, TLS, secrets, credentials, environment files, production databases, or real partner systems are read, called, or modified. No outbound network call, inbound webhook, or message transmission occurs."
  },
  "modules": [
    {
      "id": "fund-accountability",
      "label": "Fund Accountability"
    },
    {
      "id": "stockpile-logistics",
      "label": "Stockpile & Logistics"
    },
    {
      "id": "lab-operations",
      "label": "Laboratory Operations"
    },
    {
      "id": "patient-continuity",
      "label": "Patient Continuity"
    },
    {
      "id": "restricted-patient-locator",
      "label": "Restricted Patient Locator"
    },
    {
      "id": "asset-management",
      "label": "Asset Management"
    },
    {
      "id": "program-performance",
      "label": "Program Performance"
    },
    {
      "id": "ai-intelligence",
      "label": "AI Intelligence"
    },
    {
      "id": "country-rollout",
      "label": "Country Rollout"
    },
    {
      "id": "authorized-review-room",
      "label": "Authorized Review Room"
    },
    {
      "id": "executive-review-packet",
      "label": "Executive Review Packet & Download Center"
    },
    {
      "id": "identity-access-governance",
      "label": "Identity & Access Governance"
    },
    {
      "id": "data-quality-reconciliation",
      "label": "Data Quality & Reconciliation"
    },
    {
      "id": "risk-incident-case-governance",
      "label": "Risk, Incident & Case Governance"
    },
    {
      "id": "policy-compliance-control-governance",
      "label": "Policy, Compliance & Control Governance"
    },
    {
      "id": "service-reliability-continuity",
      "label": "Service Reliability & Continuity"
    }
  ],
  "routes": [
    "/interoperability-data-exchange-governance/interfaces",
    "/interoperability-data-exchange-governance/interface-versions",
    "/interoperability-data-exchange-governance/partners",
    "/interoperability-data-exchange-governance/partner-agreements",
    "/interoperability-data-exchange-governance/data-sharing-agreements",
    "/interoperability-data-exchange-governance/exchange-profiles",
    "/interoperability-data-exchange-governance/schemas",
    "/interoperability-data-exchange-governance/schema-versions",
    "/interoperability-data-exchange-governance/terminology-mappings",
    "/interoperability-data-exchange-governance/code-mappings",
    "/interoperability-data-exchange-governance/message-types",
    "/interoperability-data-exchange-governance/data-elements",
    "/interoperability-data-exchange-governance/consent-reviews",
    "/interoperability-data-exchange-governance/lawful-basis-reviews",
    "/interoperability-data-exchange-governance/minimum-necessary-reviews",
    "/interoperability-data-exchange-governance/privacy-reviews",
    "/interoperability-data-exchange-governance/security-reviews",
    "/interoperability-data-exchange-governance/test-cases",
    "/interoperability-data-exchange-governance/test-results",
    "/interoperability-data-exchange-governance/compatibility-reviews",
    "/interoperability-data-exchange-governance/exchange-events",
    "/interoperability-data-exchange-governance/acknowledgements",
    "/interoperability-data-exchange-governance/retries",
    "/interoperability-data-exchange-governance/dead-letter-records",
    "/interoperability-data-exchange-governance/reconciliation",
    "/interoperability-data-exchange-governance/duplicates",
    "/interoperability-data-exchange-governance/conflicts",
    "/interoperability-data-exchange-governance/delivery-failures",
    "/interoperability-data-exchange-governance/integration-incidents",
    "/interoperability-data-exchange-governance/exceptions",
    "/interoperability-data-exchange-governance/remediation",
    "/interoperability-data-exchange-governance/retirement-plans",
    "/interoperability-data-exchange-governance/approval-chains",
    "/interoperability-data-exchange-governance/evidence",
    "/interoperability-data-exchange-governance/risk-signals",
    "/interoperability-data-exchange-governance/audit-events",
    "/interoperability-data-exchange-governance/separation-of-duties",
    "/interoperability-data-exchange-governance/summary"
  ]
}