-
-
Notifications
You must be signed in to change notification settings - Fork 0
Architecture
David Condrey edited this page Aug 8, 2026
·
2 revisions
The project has three deliberately separated layers:
- Public static viewer: a self-contained map of composite/de-identified data, with browser-side verification, service-directory references, structured offers, and no backend.
- Signing pipeline: TypeScript CLI that validates consent and location boundaries, transforms raw notes under a no-fabrication prompt, signs deterministic JSON/CBOR, and emits COSE/DID provenance.
- Future private service layer: an encrypted, access-controlled API for real intake, provider workflows, moderation, and audit events. It does not exist in the current demo.
See docs/protocol.md for the signed format and docs/limitations.md for what the current system cannot prove.
On Record is a prototype. Do not enter real protected information. Guidance should be reviewed before each pilot or distribution. Return to Home · Report a security issue
About the site
Audience guides
Commitments and tools
Governance and technical
Participation