Actions
Story #11
openEpic #1: Access Control & Identity Management
Implement Role-Based Access Control (RBAC)
Status:
New
Priority:
Medium
Assignee:
-
Target version:
-
Start date:
12/24/2025
Due date:
% Done:
0%
Estimated time:
Acceptance Criteria:
1. System supports roles: Admin, Analyst, Viewer (extendable)
2. Each role has clearly defined permissions
3. Users can be assigned exactly one role at a time
4. Access to PHI endpoints is enforced by role
5. Unauthorized access attempts are denied and logged
DOR:
No
Story Points:
Work Type:
Feature
User Impact:
Technical Area:
Release Narrative:
Planned Sprint:
Completed In Sprint:
Spillover Reason:
Deployment Reference URL:
Description
As a system administrator,
I want to assign predefined roles to users,
So that access to PHI is restricted based on job responsibility.
No data to display
Actions