Prescripta v1.0.0 — Stable Demo Workstation
Prescripta v1.0.0 closes the portfolio baseline with a task-first clinical/research interface,
progressive technical disclosure, accessible aggregate visualizations and governed local health
assets. The stable label applies to the repository's synthetic demo contract, not to clinical or
production fitness.
Highlights
- refreshed light-first workstation shell, semantic tokens and complete mobile navigation;
- dashboard organized around continuing work and items requiring attention;
- Research organized as Overview, Protocol, Cohort, Analysis, Results, Evidence and Provenance,
with URL deep links and contextual subareas; - accessible chart frames with equivalent tables and deterministic server-calculated values;
- Pharmacy uses authorized patient and medication labels while internal IDs remain in technical
details; imported/FHIR raw payloads use the same progressive pattern; - selected Health Icons are vendored locally under CC0 with source commit, SHA-256 and executable
SVG safety checks; - OpenAPI v1 snapshot and version-aware CI/Qualification/release policies.
Safety boundary
Only synthetic or demonstration data is supported. Deterministic backend services calculate;
AI outputs remain proposals or explanations; authorized humans approve. The release has no clinical,
causal, epidemiological, regulatory, institutional, complete FHIR/SMART/CDS Hooks, complete OMOP,
OHDSI network or production-readiness validation.
Release evidence
The annotated v1.0.0 tag is created only after CI, Security, Container and Qualification succeed
on the exact final SHA. The tag workflow reuses those artifacts to publish dependency/image SBOMs,
benchmark and recovery evidence, governed Trivy exceptions and SHA-256 checksums. URLs and final
artifact verification are recorded in the v1 RC quality report after publication.
Known residuals
- human clinical-language evaluation and physical device/accessibility validation remain owner work;
- GitHub alert APIs returned 404 for the available token, so this is not evidence of zero alerts;
CVE-2026-14456remains a narrow, expiring Debian/OpenSSL exception for an unused QUIC server
listener; ignored is not fixed;- OMOP remains CDM 5.4 partial and FHIR remains a bounded R4 JSON subset.