Difference between revisions of "Security Gates"

From Galen Healthcare Solutions - Allscripts TouchWorks EHR Wiki
Jump to navigation Jump to search
Line 131: Line 131:
 
|-
 
|-
 
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Chart-Alert-Edit'''
 
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Chart-Alert-Edit'''
| style="border-style: solid; border-width: 0 1px 1px 0"| Grants access to create or edit [[Chart Alerts]] on the [[Clinical Toolbar]]
+
| style="border-style: solid; border-width: 0 1px 1px 0"| Grants access to create or edit [[Chart Alerts]] on the [[Clinical toolbar]]
 
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot create or edit [[Chart Alerts]]
 
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot create or edit [[Chart Alerts]]
 
|-
 
|-
Line 141: Line 141:
 
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows user to select "By Protocol" option, giving organizations the ability to circumvent the Authorize Order task that is created when the user's preference for medication orders is set to Prospective authorization. This indicates that a verbal authorization was granted or the established protocol was followed
 
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows user to select "By Protocol" option, giving organizations the ability to circumvent the Authorize Order task that is created when the user's preference for medication orders is set to Prospective authorization. This indicates that a verbal authorization was granted or the established protocol was followed
 
| style="border-style: solid; border-width: 0 1px 1px 0"| "By Protocol" option is not present upon ordering, forcing typical workflow for Prospective authorization for applicable users upon ordering medication orders
 
| style="border-style: solid; border-width: 0 1px 1px 0"| "By Protocol" option is not present upon ordering, forcing typical workflow for Prospective authorization for applicable users upon ordering medication orders
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''WorkListAdmin'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Controls the ability to administer worklist views of other users. This is typically given to the same role of users who also have the ability to create taks views (think of it like enterprise task views, only for worklists). Typically this would not include Help Desk users, but certainly administrators and occassionally site admins
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot administer worklist views of other users
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Worklist View - Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Grants a user to edit their own [[Worklist]] views.
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit their own [[Worklist]] views, however a user can still switch between their pre-defined views
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Note View - Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Permits editing of [[Note]] views.
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit [[Note]] views
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''TWUser-Provider-Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows modification of settings under provider detail menus within [[TWAdmin]]
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit settings under provider detail menus in [[TWAdmin]]
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''TWuser-User Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows modification of settings under user details menu within [[TWAdmin]]
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit settings under user details menu in [[TWAdmin]]
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Patient Report Exempt-Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Permits modification of the Patient Report Exempt
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit the Patient Report Exempt
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Can Reprint/Resend Rx'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows a user to reprint or resend a prescription, but does not grant the ability to write a new prescription
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot repint/resend prescriptions
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Patient Profile Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows editing of info in the Patient Profile window
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit any information in the Patient Profile. This effectively prevents users from adding chart alerts or changing the PCP - see also [[Lock PCP]]
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Order-Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows editing of an existing order (i.e. a physician places an order and then someone without the proper "ordering authority" needs to update the order with the necessary information)
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit an existing order
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Recommendation View'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows viewing of recommendations
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot view recommendations
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Recommendation Edit'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows editing of recommendations
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot edit recommendations
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''CQS Access'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows access to CQS
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Restricts access to CQS
 +
|-
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| '''Chart Download'''
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Allows "Chart Download" option in [[Chartviewer]]
 +
| style="border-style: solid; border-width: 0 1px 1px 0"| Cannot use "Chart Download" option in [[Chartviewer]]
 
|-
 
|-
 
|}
 
|}
+
 
* '''WorkListAdmin''' - controls the ability to administer the worklist views of other users. This would be given to the same types of people that would get the ability to create task lists (think of it like enterprise task views).  Typically this would not include Help Desk users, but certainly administrators and occasionally site admins.
 
* '''Worklist View - Edit''' - same as Clinical Desktop View-Edit except for Worklist View.
 
* '''Note View - Edit''' - same as Clinical Desktop View-Edit except for Note View .
 
* '''TWUser-Provider-Edit''' - Allows the user to adjust only usertypes of provider details within TWAdmin.
 
* '''TWuser-User Edit''' - Allows the user to adjust only usertypes of user details within TWAdmin.
 
* '''Patient Report Exempt-Edit''' - Restricts or permits users to edit the Patient Report Exempt.
 
* '''Can Reprint/Resend Rx''' - Allows the user to reprint or resend a prescription, but does not grant them the ability to write a new prescription.
 
* '''Patient Profile Edit''' - locks down the whole Pat info screen, which will prevent users from adding chart alerts or changing the patient's PCP - see also [[Lock PCP]].
 
* '''Order-Edit''' - Allows the user to edit an existing order (i.e. a physician places an order and then someone without the proper “ordering authority” needs to update the order with needed information).
 
* '''Recommendation View''' - Restricts or permits users from viewing recommendations.
 
* '''Recommendation Edit''' - Restricts or permits users from editing recommendations.
 
* '''CQS Access''' - Restricts or permits a user from accessing CQS.
 
* '''Chart Download''' - Restricts or permits using the Chart Download option in Chartviewer.
 
  
  
 
Back to [[Security]]
 
Back to [[Security]]

Revision as of 23:21, 13 November 2012

Definition

Security Gates are access points within different areas of Allscripts Enterprise EHR which can be restricted or allowed based on a user's role within an organization. Security Gates are managed from TWAdmin > Security Admin (VTB) > Security tab (HTB) > Security Gates (drop down).


Note: Items below with * below indicate carryover from v10 and items with ** indicate that they cannot be turned off in Security Gates.

Security Gates

Gate Definition When Gate is "Locked"
Can Prescribe* Allows a user to prescribe a medication under user's own name Unable to prescribe medications under user's own name
Break Glass* Allows user(s) to see secured documents by means of the "Break Glass" icon in the patient banner User(s) cannot break glass to view secured documents
Confidential Patients* Used when the Practice Management System defines a patient as confidential Patient chart cannot be accessed, tasks cannot be sent regarding this patient to user's without this code, and name is hidden on daily schedule
Chart-View* Allows viewing access to patient charts Cannot view patient charts
Chart-Edit* Allows access to edit patient charts Unauthorized users can view, but cannot edit patient charts
Chart-Print* Allows access to print patient charts Unauthorized users can view and edit patient charts, but cannot print patient charts
Chart-PrintChart-Set System Templates* Allows access to set system template(s) when printing charts Cannot set system template(s) when printing charts
Results-Verify Allows access to verify results Cannot verify results
Results-Edit Allows access to edit results; this code is needed to add vitals or to manually enter in-office or point-of-care results such as a Rapid Strep or Urinalysis Cannot enter or edit results or edit vitals
Results-Invalidate Controls the ability to invalidate results Cannot invalidate results
Document-Invalidate Controls the ability to invalidate documents Cannot invalidate documents
Document-Reconcile Allows correction of unstructured documents (typically these are transcriptions received via ConnectR Cannot correct unstructured documents
Document-Management Allows for management of documents in the Document Management workspace Cannot access Document Management workspace or perform the functions unique to this workspace
Chart-PrintChart Allows for printing of more than one document from a patient chart via the "Print Chart" button Print Chart button is disabled and user can only fax one document at a time
Restricted Patient Access Security Code Grants unrestricted access to patients assigned to this Patient Security Access Group Access to chart is restricted by a prompt asking for password entry and notification of chart actions undergoing a detailed audit
Employee & Family Patient Security Code Grants unrestricted access to patients assigned to this Patient Security Access Group Access to chart is restricted by a prompt asking for password entry and notification of chart actions undergoing a detailed audit
VIP Patient Access Security Code Grants unrestricted access to patients assigned to this Patient Security Access Group Access to chart is restricted by a prompt asking for password entry and notification of chart actions undergoing a detailed audit
Results-EditInterface Provides access to edit results that are automatically filed via the interface Cannot edit results that are filed via the interface
Physician Administration Tool Admin Allows users defined with the Physician Admin Tools as part of their workspace to create/edit items in the PAT menu Cannot create or edit items in PAT
Physician Administration Tool Group Lead Allows users defined with the [[PAT|Physician Admin Tools] as part of their workspace to create/edit items as Group Leader for other users in their group in the PAT menu (example: Radiologists) Cannot create or edit items for other users
EReply Allows user(s) to send messages to patients via the Patient Portal Cannot send messages to patient through the portal
Clinical Desktop View-Edit Grants a user to edit their own Clinical Desktop views. Cannot edit their own Clinical Desktop views, however a user can still switch between their pre-defined views
ChartViewer View-Edit Grants a user to edit their own ChartViewer views. Cannot edit their own ChartViewer views, however a user can still switch between their pre-defined views
Can Renew Allows renewing of medication while still restricting modifying existing meds or adding new meds Cannot renew medications
Print Queue-View Rx** Allows for viewing of Rx jobs in the Print Queue Cannot view Rx jobs in the Print Queue
Print Queue-View Chart Item** Allows for viewing of chart item jobs in the Print Queue Cannot view chart item jobs in the Print Queue
Print Queue-View Coversheet** Allows for viewing of coversheets for jobs in the Print Queue Cannot view coversheets for jobs in the Print Queue
Print Queue-Reroute Chart Item** Allows ability to reroute chart item jobs in the Print Queue Cannot reroute chart item jobs in the Print Queue
Chart-Alert-View Gransts access to view Chart Alerts on the Clinical Toolbar Cannot view Chart Alerts
Chart-Alert-Edit Grants access to create or edit Chart Alerts on the Clinical toolbar Cannot create or edit Chart Alerts
Non-Med Order Protocol Allows user to select "By Protocol" option, giving organizations the ability to circumvent the Authorize Order task that is created when the user's preference for orders is set to Prospective authorization. This indicates that a verbal authorization was granted or the established protocol was followed "By Protocol" option is not present upon ordering, forcing typical workflow for Prospective authorization for applicable users upon ordering non-medication orders
Med Order Protocol Allows user to select "By Protocol" option, giving organizations the ability to circumvent the Authorize Order task that is created when the user's preference for medication orders is set to Prospective authorization. This indicates that a verbal authorization was granted or the established protocol was followed "By Protocol" option is not present upon ordering, forcing typical workflow for Prospective authorization for applicable users upon ordering medication orders
WorkListAdmin Controls the ability to administer worklist views of other users. This is typically given to the same role of users who also have the ability to create taks views (think of it like enterprise task views, only for worklists). Typically this would not include Help Desk users, but certainly administrators and occassionally site admins Cannot administer worklist views of other users
Worklist View - Edit Grants a user to edit their own Worklist views. Cannot edit their own Worklist views, however a user can still switch between their pre-defined views
Note View - Edit Permits editing of Note views. Cannot edit Note views
TWUser-Provider-Edit Allows modification of settings under provider detail menus within TWAdmin Cannot edit settings under provider detail menus in TWAdmin
TWuser-User Edit Allows modification of settings under user details menu within TWAdmin Cannot edit settings under user details menu in TWAdmin
Patient Report Exempt-Edit Permits modification of the Patient Report Exempt Cannot edit the Patient Report Exempt
Can Reprint/Resend Rx Allows a user to reprint or resend a prescription, but does not grant the ability to write a new prescription Cannot repint/resend prescriptions
Patient Profile Edit Allows editing of info in the Patient Profile window Cannot edit any information in the Patient Profile. This effectively prevents users from adding chart alerts or changing the PCP - see also Lock PCP
Order-Edit Allows editing of an existing order (i.e. a physician places an order and then someone without the proper "ordering authority" needs to update the order with the necessary information) Cannot edit an existing order
Recommendation View Allows viewing of recommendations Cannot view recommendations
Recommendation Edit Allows editing of recommendations Cannot edit recommendations
CQS Access Allows access to CQS Restricts access to CQS
Chart Download Allows "Chart Download" option in Chartviewer Cannot use "Chart Download" option in Chartviewer


Back to Security