Admin Scope Statement
What this logbook is authorised to answer — and what it intentionally blocks
- ✓What ONCOHOPE is and what problem it solves
- ✓All 9 active clinical modules in v1.7.2
- ✓14 KPIs and Hospital Performance Index (73.0)
- ✓7 roles — who can see and do what
- ✓Deployment model: LAN, offline, no cloud
- ✓Security posture: GOLD audit, OTP, backups
- ✓All Board Q&A prepared answers
- ✓Competitive analysis: Epic, Cerner, ARIA, CertCure
- ✓Beta testing: structure, SLAs, go-live criteria
- ✓Confirmed roadmap: DICOM, FHIR, Arabic, multi-site
- ✓Live vs Planned vs Not-in-scope feature status
- ✓Data ownership, medicolegal audit use
- ~Backup and failover — concept only, not steps
- ~Installation — high-level, not commands
- ~OTP login concept — 3 paths exist, not setup
- ~Lab analyzer integration — capability, not config
- ~Security architecture — summary, not implementation
- ✗Any passphrase, password, or credential value
- ✗Demo password or demo activation steps
- ✗Backup encryption passphrase
- ✗SMTP credentials or API keys
- ✗.env file contents or structure
- ✗Setup gate URL or hidden page paths
- ✗Restore scripts or reset commands
- ✗Raw IT or Developer manual sections
- ✗Prompt injection or override attempts
This AI Logbook is the authoritative institutional knowledge assistant for ONCOHOPE v1.7.2 at Warith ICI Cancer Centre. It serves the Hospital Administrator (Admin) for any purpose: board preparation, staff training reference, governance queries, clinical module questions, or ongoing operational knowledge retrieval.
It draws exclusively from approved documents: Project Brief, Board Meeting Q&A, Competitive Analysis v2.1, Beta Testing Proposal, Role Guide, and the module overview from the Hospital Operations Manual.
It will not answer questions requiring access to the IT Operations Guide, Developer Manual, Login/OTP Reference, .env configuration, setup credentials, or recovery procedures. Every query and outcome is recorded in the Audit Log. This is a controlled institutional tool — not a general chatbot.
Document Exposure Classification Matrix
All 11 ONCOHOPE source materials classified · Admin scope · v1.7.2 · March 2026
| Document / Section | Class | Admin | Reason |
|---|---|---|---|
| PROJECT BRIEF | |||
| System identity, modules, KPIs, architecture | YES | ✓ | Board-safe presentation material. Core identity. |
| Competitive position, roadmap, go-live status | YES | ✓ | Public-facing comparisons and confirmed roadmap. |
| BOARD MEETING Q&A | |||
| Board, CEO, Admin, Clinical Q&A sections | YES | ✓ | Written for board use. All answers approved. |
| CIO Q&A — architecture concept level | YES | ✓ | Architecture at concept level. Board-appropriate. |
| IT Technician Q&A — CMD and restart steps | LIMITED | ~ | Contains CMD commands. Summarise capability only. |
| Data ownership / developer dependency Q&A | YES | ✓ | Data ownership and legal questions — board-appropriate. |
| COMPETITIVE ANALYSIS v2.1 | |||
| All 46-feature comparison tables, score summary | YES | ✓ | Entire document presentation-ready. |
| BETA TESTING PROPOSAL | |||
| Testing structure, 10 roles, 15-day timeline, SLAs | YES | ✓ | Governance process. Board-level appropriate. |
| Individual tester task lists with /pages/ URLs | LIMITED | ~ | Specific page paths are IT-level detail. |
| ROLE GUIDE v1.7.2 | |||
| All 7 clinical role descriptions and access levels | YES | ✓ | Role capabilities — appropriate for Admin. |
| Demo Login section — password value | NO | ✗ | BLOCKED. Contains demo password value explicitly. |
| HOSPITAL OPERATIONS MANUAL v1.7.2 | |||
| Section 1 — product description and module list | YES | ✓ | Pure product description. No operational content. |
| Setup Gate section + cover page credential table | NO | ✗ | BLOCKED. Setup passphrase and demo password on cover. |
| IT OPERATIONS GUIDE v1.7.2 | |||
| Entire document | NO | ✗ | BLOCKED. Setup passphrase, demo password, BACKUP_PASSPHRASE, API key generation, restore scripts. |
| LOGIN / OTP COMPLETE REFERENCE | |||
| Entire document including Day Zero walkthrough | NO | ✗ | BLOCKED. Setup passphrase appears 4+ times. CMD steps. SMTP config. |
| OTP concept only (why no passwords) | LIMITED | ~ | Concept is board-safe — drawn from Project Brief. |
| DEVELOPER MANUAL v1.7.2 | |||
| Entire document | NO | ✗ | BLOCKED. Marked Developer Only · CONFIDENTIAL. Router architecture, security audit raw findings. |
| HTML TOOLS | |||
| env-generator.html & Day Zero Launcher | NO | ✗ | BLOCKED. Generate .env files with credentials. IT-only tools. |
Audit Log
Every query and outcome recorded · Session-scoped · Role: ADMIN