Actions
Story #15
openEpic #1: Access Control & Identity Management
Enforce Least Privilege Access Model
Status:
New
Priority:
Medium
Assignee:
-
Target version:
-
Start date:
12/24/2025
Due date:
% Done:
0%
Estimated time:
Acceptance Criteria:
1. Default roles have minimal permissions
2. No role has implicit full access
3. Permission changes are auditable
4. Elevated permissions require Admin action
DOR:
No
Story Points:
Work Type:
Feature
User Impact:
Technical Area:
Release Narrative:
Planned Sprint:
Completed In Sprint:
Spillover Reason:
Deployment Reference URL:
Description
User Story:
As a compliance officer,
I want users to have only the minimum permissions required,
So that PHI exposure is minimized.
No data to display
Actions