Skip to content

Prescripta v1.0.0

Latest

Choose a tag to compare

@github-actions github-actions released this 24 Aug 08:35
· 3 commits to main since this release

Prescripta v1.0.0 — Stable Demo Workstation

Prescripta v1.0.0 closes the portfolio baseline with a task-first clinical/research interface,
progressive technical disclosure, accessible aggregate visualizations and governed local health
assets. The stable label applies to the repository's synthetic demo contract, not to clinical or
production fitness.

Highlights

  • refreshed light-first workstation shell, semantic tokens and complete mobile navigation;
  • dashboard organized around continuing work and items requiring attention;
  • Research organized as Overview, Protocol, Cohort, Analysis, Results, Evidence and Provenance,
    with URL deep links and contextual subareas;
  • accessible chart frames with equivalent tables and deterministic server-calculated values;
  • Pharmacy uses authorized patient and medication labels while internal IDs remain in technical
    details; imported/FHIR raw payloads use the same progressive pattern;
  • selected Health Icons are vendored locally under CC0 with source commit, SHA-256 and executable
    SVG safety checks;
  • OpenAPI v1 snapshot and version-aware CI/Qualification/release policies.

Safety boundary

Only synthetic or demonstration data is supported. Deterministic backend services calculate;
AI outputs remain proposals or explanations; authorized humans approve. The release has no clinical,
causal, epidemiological, regulatory, institutional, complete FHIR/SMART/CDS Hooks, complete OMOP,
OHDSI network or production-readiness validation.

Release evidence

The annotated v1.0.0 tag is created only after CI, Security, Container and Qualification succeed
on the exact final SHA. The tag workflow reuses those artifacts to publish dependency/image SBOMs,
benchmark and recovery evidence, governed Trivy exceptions and SHA-256 checksums. URLs and final
artifact verification are recorded in the v1 RC quality report after publication.

Known residuals

  • human clinical-language evaluation and physical device/accessibility validation remain owner work;
  • GitHub alert APIs returned 404 for the available token, so this is not evidence of zero alerts;
  • CVE-2026-14456 remains a narrow, expiring Debian/OpenSSL exception for an unused QUIC server
    listener; ignored is not fixed;
  • OMOP remains CDM 5.4 partial and FHIR remains a bounded R4 JSON subset.