📋 Project Action Plan

HIS Implementation
Action Plan

Comprehensive implementation roadmap for a fully integrated Health Information System — Al-Faraby Medical Complex

Client
Al-Faraby Medical Complex
Developer
Thirty Eight Technology
Contract Sign Date
Tue 16 June 2026
Project Window
16 June 2026 → 1 Jan 2027
Overview Architecture Phase 1 — Foundation Data Migration Phase 2 — Integration Phase 3 — Testing & UAT Phase 4 — Mobile · Telehealth · Homecare Integration Hub Language & RTL Training Plan
Project Overview

Full Project Timeline — Contract Sign: Tuesday 16 June 2026

PHASE 1 35–40 days 16 June → 8 Aug 2026
PHASE 2 ~60 days 9 Aug → 25 Oct 2026
PHASE 3 ~55 days 26 Oct → 31 Dec 2026
PHASE 4 ~55 days 9 Nov 2026 → Live Ops 1 Jan 2027
Analysis + Design
+ First Demo
NPHIES + RASAD
Platform Integration
Testing + UAT
+ Training (Dec)
Mobile + Telehealth
+ Homecare + Nafath
4
Phases
~170
Working Days
17
Scope Items
11+
Integrations
🔀
Parallel Tracks (Phase 3 ∩ Phase 4)

Phase 3 (26 Oct → 31 Dec) owns core-system UAT, defect closure and launch readiness. Phase 4 (from 9 Nov) builds patient-facing tracks in parallel and does not block core UAT. Critical path to live ops: Phase 1 → Phase 2 → Phase 3 readiness → 1 Jan 2027. Phase 4 tracks must be trial-ready by mid-December training, but clinic live operations do not wait on every Phase 4 polish item.

📅
December 2026 Priority Order

1) Staff training (1–19 Dec) — first three weeks, non-negotiable for go-live readiness. 2) Final trials & P0/P1 defect closure (7–26 Dec) — runs alongside training without cancelling sessions. 3) Pre-launch checklist (20–31 Dec) — cut-over plan, go/no-go. Live clinic operations start 1 Jan 2027 — December is training + trials, not full production go-live.

🛡️
Schedule Contingency Buffer

A 2-week contingency buffer is reserved after Phase 2 / inside early Phase 3 (use preferentially 26 Oct → 8 Nov) for NPHIES credential delays, migration rework or critical UAT findings. Consuming the buffer may compress Phase 3 UAT windows but does not move the 1 Jan 2027 live-ops target unless jointly approved in writing by Al-Faraby and Thirty Eight Technology. Hard dependencies (NPHIES provider credentials, Nafath SP access) must still be delivered by the client on time.

📌
Scope — All Modules & Integrations

The full delivery scope below covers every module in the contract plus all required external integrations. Each item is built and signed off across Phases 1–4.

🏥 نطاق العمل — الموديولات التشغيلية
  • المواعيد — Appointments
  • التسجيل والاستقبال — Registration & Reception
  • العلامات الحيوية — Vital Signs
  • الملف الطبي — Medical File (EMR)
  • نظام الطبيب — Doctor System
  • المختبر — Laboratory
  • الأشعة — Radiology
  • الصيدلية — Pharmacy (native HIS)
  • إدارة التأمين — Insurance Management
  • إدارة المستودعات — Warehouse (native HIS · not Odoo)
  • الفوترة الإلكترونية — E-Invoicing / ZATCA (direct from HIS)
  • نقاط البيع الصيدلية — Pharmacy POS
📱 نطاق العمل — تجربة المريض
  • بوابة المريض — Patient Portal (Web)
  • الرعاية المنزلية — Homecare
  • الطب عن بعد — Telemedicine (TeleVisit)
  • تطبيق الموبايل — Mobile App (iOS & Android)
⇄ نطاق العمل — الربط والامتثال
  • الربط مع منصة نفيس — NPHIES
  • الربط مع منصة رصد — SFDA / RASAD
  • الفوترة / الزكاة — ZATCA direct HIS → Fatoora (not via Odoo)
  • Odoo — Accounting / GL sync only (no stock)
  • Nafath — National Login
  • HL7 v2 / FHIR R4 · LIS · RIS/DICOM · PACS
  • Payment Gateway · Push Notifications
✅
Contract Scope Coverage

All 17 contracted scope items above are scheduled across Phases 1–4: operational modules & e-invoicing in Phase 1, NPHIES + RASAD in Phase 2, UAT/training in Phase 3–December, and Patient Portal / Homecare / Telemedicine / Mobile App in Phase 4 — with live operations from 1 Jan 2027.

⚙️
Technical Architecture & Stack
API-First
Architecture
PostgreSQL · Redis
Backend
Laravel API
Single source of truth for business rules, EMR data, billing, claims and integrations. RESTful + queued jobs.
Admin / Internal System
Filament
Internal Al-Faraby staff app — reception, EMR, lab, radiology, pharmacy, warehouse / inventory, billing, insurance, settings & reports. Pharmacy and warehouse run fully inside the HIS.
Patient Portal
React / Next.js
Server-rendered web portal for patients — appointments, results, prescriptions, payments and insurance card.
Mobile App
Flutter
Single Flutter codebase shipped natively to iOS & Android — same features as portal plus push, biometrics & TeleVisit.
Realtime
Laravel Reverb / WebSockets
Live updates for queues, lab results, prescription status, TeleVisit signalling and dashboard KPIs.
Queue
Redis + Horizon
Async processing for NPHIES, ZATCA, RASAD, notifications and retries — monitored via Horizon dashboard.
Database
PostgreSQL
Primary datastore — encrypted at rest, daily backups, replica server and immutable audit log.
Pharmacy & Warehouse
Native HIS Modules
Drug catalogue, dispensing, POS, multi-location stock, batches, expiry and transfers are built inside the HIS — not in Odoo.
Financial / Accounting
Odoo Accounting
Odoo is limited to the financial & accounting layer (journals, GL, receivables). Operational stock and pharmacy stay in the HIS; posted invoices sync to Odoo for accounting only.
1
Foundation: Analysis, Design & First Demo
Server setup · Requirements gathering · Full module screen design · First operational build
35–40
Days
16 June → 8 Aug 2026
💰 Milestone 1 + 2
🎯
Phase Goal

Deliver a fully functional first version of the HIS platform covering all contracted modules — with complete UI screens, workflows, and data structure. No NPHIES or external platform integration in this phase. Client signs off on all screens and workflows before Phase 2 begins.

Week 1 — Project Kickoff & Server Infrastructure · 16–23 Jun 2026
#TaskResponsibleDateStatus
1.1
Project Kickoff Meeting
Both Parties 16 Jun Pending
1.2
Cloud Server Provisioning — Saudi Cloud Computing (sccc) Provision staging environments on sccc. Configure PostgreSQL
Dev Team 16–18 Jun Pending
1.3
Domain, SSL, DNS, & Environment Configuration Configure staging environment with SSL, Redis, queues and storage.
Dev Team 17–19 Jun Pending
1.4
Multi-Tenant Setup & Clinic Branch Configuration Set up Al-Faraby tenant with its branches, clinics and specialty assignments.
Dev Team 18–21 Jun Pending
1.5
Requirements Workshop — Al-Faraby Workflows Capture current workflows, forms and approval processes from each department into a formal requirements spec.
Both Parties 18–23 Jun Pending
1.6
Backup Strategy Configuration Hourly + daily backups. Encrypted at rest. Replica server configured. Business continuity mode enabled.
Dev Team 21–23 Jun Pending
Weeks 2–3 — Core Module Development: Registration, Appointments, Vitals · 29 Jun → 14 Jul 2026
#TaskResponsibleDateStatus
2.1
📅 Appointments Module — Full Screen Build Appointment booking and daily queue management with walk-ins and follow-up scheduling.
Dev Team 29 Jun → 2 Jul 2026 Pending
2.2
👤 Registration & Reception Module Patient registration, reception desk workflow, check-in and queue handoff.
Dev Team 29 Jun → 5 Jul 2026 Pending
2.3
💗 Vital Signs Module
Dev Team 1–5 Jul Pending
2.4
🩺 Doctor Encounter Module — Clinical EMR
Dev Team 3–15 Jul Pending
Weeks 3–5 — Clinical + Financial Modules · 8 Jul → 8 Aug 2026
#TaskResponsibleDateStatus
3.1
🔬 Laboratory Module Lab orders, sample tracking, result entry with critical-value flagging and a full test catalogue.
Dev Team 8–13 Jul Pending
3.2
🩻 Radiology Module Radiology order workflow, report writing and integration to the encounter.
Dev Team 8–12 Jul Pending
3.3
💊 Pharmacy & Warehouse Module (Native HIS) E-prescriptions, dispensing, POS, drug catalogue, multi-location warehouse, batch/expiry — all built inside the HIS (not Odoo).
Dev Team 10–17 Jul Pending
3.4
💳 Invoicing & ZATCA Module (Direct from HIS) Auto-invoice from encounter services with ZATCA QR, VAT and patient balance. Submission goes directly from the HIS to ZATCA Fatoora — not through Odoo. Odoo receives accounting postings only.
Dev Team 13–22 Jul Pending
3.5
🛡️ Insurance Management Module (Setup Only — No NPHIES in Phase 1)
Dev Team 15–27 Jul Pending
3.6
⚙️ System Settings & Administration
Dev Team 17–24 Jul Pending
3.7
🔐 Security Setup: MFA, Audit Logs, Encryption MFA, encryption at rest & in transit, WAF, immutable audit logs and security monitoring.
Dev Team 22–28 Jul Pending
3.8
📊 Reports Module — Phase 1 Baseline Clinical, financial, lab, audit and inventory reports, exportable to Excel/PDF.
Dev Team 24 Jul → 30 Jul 2026 Pending
3.9
✅ Phase 1 Demo & Client Sign-Off Full walkthrough of all contracted modules with the Al-Faraby team for formal Phase 1 sign-off.
Both Parties 3–8 Aug Pending
Phase 1 Deliverables
🖥️

17 Scope Modules Built

All contracted operational modules (incl. native pharmacy & warehouse) operational in staging

Staging URL
☁️

sccc Production Infrastructure

PostgreSQL HA Cluster, Redis, Queue workers, Backup strategy active

Saudi Cloud
📋

Requirements Document

Formal sign-off on all workflows and screen specifications

Approved Doc
👥

User Accounts Ready

All roles configured with correct permissions for Al-Faraby team

Roles Ready
📄

Invoice PDF Templates

Invoice types (Insurance, Cash Saudi, Direct Company) matching Al-Faraby format

ZATCA Compliant
📊

Technical Documentation

Database schema, integration list, operational reports, process documents

v1 Docs
🗄️
Data Migration Plan
Patient records · Legacy system data · Drug catalogue · Insurance payers · Master data — parallel track across Phases 1–3
Parallel
Track
Phase 1 → Phase 3
🗃️ Pre Go-Live
Data Migration Deliverables
📄

Migration Scope Document

Formal agreement on which datasets are migrated and which start fresh

DM.1 · Jun
🗺️

Field Mapping Matrix

Legacy field → HIS field mapping with cleansing rules for each dataset

DM.2 · Jun
🛠️

ETL Scripts (Version-Controlled)

Extraction, transformation and load scripts stored in the project repository

DM.3 · Jul
✅

Client Sign-Off on Migrated Data

Formal written approval from Al-Faraby that staging data is accurate and complete

DM.5 · Sep
🚀

Production Load Report

Record count verification report confirming production data matches approved staging load

DM.6 · Nov
Datasets in Scope
DatasetDescriptionSource FormatPriority
👤 Patient Demographics
MRN, name, DOB, National ID / Iqama, contact, emergency contacts
Excel / DB export
🔴 Critical
🏥 Visit & Encounter History
Historical encounters, diagnoses (ICD-10), procedures (CPT)
Legacy DB / Excel
🔴 Critical
💊 Drug Catalogue
Drug names, codes, units, prices, SFDA codes, pack sizes
Excel / CSV
🔴 Critical
🛡️ Insurance Payers & Plans
Payer names, NPHIES codes, plans, copay rules, service codes
Excel
🔴 Critical
💰 Service Price List
All clinical and non-clinical service codes with prices per payer
Excel
🟠 High
👨‍⚕️ Doctor & Staff Directory
Doctor names, specialties, SCFHs license numbers, availability
Excel / HR system
🟠 High
💳 Outstanding Invoices & Balances
Open AR balances, pending insurance claims, patient credit balances
Excel / Accounting
🟡 Medium
2
Platform Integration — NPHIES, RASAD & External Systems
NPHIES direct connection · All transaction types · RASAD/SFDA · ZATCA submission · HL7 FHIR R4
~60
Days
9 Aug → 25 Oct 2026
💰 Milestone 3
Pre-Requisite — NPHIES Onboarding (Client Action Required)
⚠️
Al-Faraby Must Complete Before Phase 2 Can Start

Register at portal.nphies.sa as a healthcare provider. Obtain: (1) Provider ID, (2) OAuth 2.0 Client ID, (3) Client Secret, (4) Token Endpoint URL, (5) NPHIES Payer Code for each insurance company. This is free of charge but requires CCHI approval. Process takes 1–3 weeks. Start this in Week 1 of Phase 1.

#Pre-Requisite TaskResponsibleDue
P.1
Register on NPHIES Provider Portal Register as Provider → Submit facility license + CCHI enrollment form
Al-Faraby 6–13 Aug
P.2
Obtain OAuth 2.0 Credentials from CCHI Provider ID + Client ID + Client Secret + Token Endpoint URL
Al-Faraby 14 Aug → 30 Aug 2026
P.3
Collect Insurance Payer Codes for All Contracted Payers
Al-Faraby 14–21 Aug
NPHIES Integration — All Transaction Types · 9 Aug → 5 Oct 2026
#TaskResponsibleDateStatus
N.1
OAuth 2.0 Integration — OAuthTokenService Implement OAuth 2.0 authentication against NPHIES with token caching and auto-refresh.
Dev Team 9–10 Aug Pending
N.2
Beneficiary Discovery — Sandbox Testing Discover patient insurance from NPHIES using National ID and validate the FHIR response.
Dev Team 7–10 Aug Pending
N.3
Eligibility Verification — Full FHIR Compliance Fix Complete the NPHIES eligibility transaction for all purpose types (benefits, validation, discovery, auth-requirements).
Dev Team 9–13 Aug Pending
N.4
Prior Authorization — Full Workflow + Scrubber Submit prior authorisations to NPHIES with scrubber rules, resubmission and approval tracking.
Dev Team 12–19 Aug Pending
N.5
Claim Submission — Full FHIR Claim with KSA Extensions Submit NPHIES claims with the full FHIR R4 structure and per-line-item adjudication parsing.
Dev Team 17–26 Aug Pending
N.6
Claim Resubmission, Cancellation & Status Polling Claim resubmission, cancellation, status polling and submission-attempt limits.
Dev Team 23 Aug → 31 Aug 2026 Pending
N.7
Solicited & Unsolicited Communications Send and receive NPHIES Communication messages (solicited & unsolicited) with attachments.
Dev Team 15 Sep → 22 Sep 2026 Pending
N.8
Payment Posting & Newborn Transaction Record NPHIES payment notifications against claims, including the newborn-on-mother's-policy workflow.
Dev Team 22–28 Sep Pending
N.9
ICD-10 Clinical Edits — Gender, Age, Morphology Enforce gender, age and morphology rules on ICD-10 codes for claim scrubbing.
Dev Team 28 Sep → 5 Oct Pending
N.10
NPHIES Sandbox Compliance Testing — All Transactions Validate all NPHIES FHIR payloads against the official Implementation Guide and run end-to-end sandbox tests.
Dev Team 5–12 Oct Pending
RASAD, ZATCA & Other Integrations · 12–25 Oct 2026
#TaskResponsibleDateStatus
R.1
RASAD Platform Integration (SFDA Drug Tracking) Connect to SFDA RASAD for narcotic and controlled-substance tracking.
Dev Team 12–18 Oct Pending
R.2
ZATCA E-Invoicing — Direct HIS → Fatoora Generate ZATCA-compliant e-invoices (QR, UUID, XML) and submit directly from the HIS to the ZATCA Fatoora portal. Odoo is not in the ZATCA path — it only receives financial journal entries.
Dev Team 12–20 Oct Pending
R.4
Tawuniya GSS Invoice Format Generate Tawuniya GSS-format invoices for Tawuniya claims.
Dev Team 18–22 Oct Pending
R.5
Integration Testing — End-to-End Flow Verification End-to-end test of the full patient → eligibility → PA → claim → invoice flow with NPHIES.
Both Parties 22–25 Oct Pending
Phase 2 Deliverables
🌐

Live NPHIES Sandbox Connection

All transaction types tested and validated in NPHIES sandbox

FHIR R4
📋

ZATCA-Compliant PDF Invoices

Invoice types with QR codes matching Al-Faraby reference format

ZATCA
💊

RASAD Drug Tracking Active

SFDA controlled substance tracking and reporting enabled

SFDA
🔗

Integration List Document

All active integrations documented with endpoints and credentials reference

Docs v2
3
Testing, UAT & Launch Readiness
Integration testing · User acceptance testing · Defect closure · Pre-launch readiness (live ops from early 2027)
~55
Days
26 Oct → 31 Dec 2026
💰 Milestone 4
🧪
Phase Goal

Validate the core HIS through Integration Testing and User Acceptance Testing (UAT) with Al-Faraby clinical and administrative staff. Close P0/P1 defects. Complete staff training in December (see Training Plan). Finalize production cut-over readiness. Live clinic operations target: Friday 1 January 2027 — not a December go-live. Phase 4 patient-facing tracks run in parallel from November and do not replace core UAT.

Testing & UAT Tasks · 26 Oct → 30 Nov 2026
#TaskResponsibleDateStatus
T.1
Integration Testing — All Modules Linked End-to-end testing of all contracted modules working together across the full patient journey.
Dev Team 26 Oct → 2 Nov 2026 Pending
T.2
User Interface Navigation Testing Test navigation, specialty tabs and Arabic/English display on desktop, tablet and mobile.
Dev Team 27 Oct → 1 Nov Pending
T.3
UAT Session 1 — Reception & Appointments Team Reception staff UAT covering registration, booking, check-in and eligibility.
Both Parties 1–4 Nov Pending
T.4
UAT Session 2 — Doctors & Clinical Staff Physician UAT covering encounters, diagnoses, prescriptions, orders and specialty tools.
Both Parties 3–8 Nov Pending
T.5
UAT Session 3 — Pharmacy, Lab, Radiology Teams Pharmacy, lab and radiology teams test their modules end-to-end.
Both Parties 6–9 Nov Pending
T.6
UAT Session 4 — Insurance & Finance Teams Insurance and finance teams test eligibility, PA, claims and ZATCA-compliant invoicing.
Both Parties 8–11 Nov Pending
T.7
Defect Resolution — All UAT Issues Triage all UAT findings by priority and fix every P0/P1 defect before go-live. Starts only after all 4 UAT sessions are fully closed (T.3–T.6 completed).
Dev Team 12 Nov → 30 Nov Pending
T.8
Staff Training — All Departments (see Training Plan) Three-week on-site + online training in December 2026 (first three weeks) — full schedule in the Training Plan section.
Dev Team 1–19 Dec 2026 Pending
Operational Go-Live — Beginning of 2027 · Target Fri 1 Jan 2027
📅
Live Operations Timeline

Phase 3 closes with testing, UAT and launch readiness. Actual production operations start at the beginning of 2027 (target: Friday 1 January 2027), after December training and final trials.

#TaskResponsibleDateStatus
GL.1
Pre-Launch Checklist & Production Cut-Over Plan Finalize DNS/NPHIES production cut-over plan, rollback criteria and go/no-go checklist for early-2027 launch.
Both Parties 20–31 Dec 2026 Pending
GL.2
Production Environment Go-Live (Live Operations) Cut over to production and begin live operations at the start of 2027 — monitored first transactions on NPHIES & ZATCA.
Dev Team 1 Jan 2027 Pending
GL.3
Hyper-Care Support — First Week of Live Ops On-site hyper-care immediately after go-live with daily status calls and rapid issue resolution.
Dev Team 1–7 Jan 2027 Pending
GL.4
Final Technical Documentation Handover Final handover of database schema, integration list, business-process docs and admin credentials.
Dev Team 1–7 Jan 2027 Pending
4
Mobile App, Telemedicine, Homecare & National Login
Patient mobile app (iOS & Android) · TeleVisit video consultation · Homecare module · Nafath (National Login) integration
~55
Days
9 Nov 2026 → 1 Jan 2027
💰 Milestone 5
🚀
Phase Goal

Deliver the patient-facing digital experience: a native iOS & Android mobile application, a full Telemedicine capability built directly on Al-Faraby's Telemedicine Technical Framework, a complete Homecare workflow that digitizes the official Home Care Service Flow Chart and forms (Initial Assessment, Follow-Up Appointments, Home Visit Log), and integration with the Saudi National Login (Nafath) platform for unified patient and provider authentication. Phase 4 runs in parallel with Phase 3 from 9 Nov (Nafath Track D: 2–24 Nov). It does not gate core UAT. December priority: (1) staff training 1–19 Dec, (2) final trials & defect closure, (3) pre-launch checklist. Live / production operations: Friday 1 January 2027.

Track A — Patient Mobile Application (iOS & Android) · 2 Nov → 6 Dec 2026
#TaskResponsibleDateStatus
A.1
📱 Mobile App Architecture & Cross-Platform Setup Cross-platform iOS & Android foundation: project setup, CI/CD, store certificates and bilingual RTL/LTR base.
Dev Team 2–5 Nov Pending
A.2
🔐 Patient Authentication & Onboarding Mobile patient registration, OTP, biometric login and dependent management.
Dev Team 4–10 Nov Pending
A.3
📅 Appointment Booking & Management In-app booking with clinic/doctor browsing, real-time slots, reminders and queue notifications.
Dev Team 8–15 Nov Pending
A.4
🧾 Visit History, Lab Results & Prescriptions Patient view of medical history, results, prescriptions and reports with secure PDF download.
Dev Team 13–20 Nov Pending
A.5
💳 Insurance Card, Notifications & Profile Digital insurance card, push notifications, profile and language/theme preferences.
Dev Team 17–24 Nov Pending
A.6
💰 In-App Payments In-app payment of balances and copays via Mada / Apple Pay / Google Pay with ZATCA invoice.
Dev Team 22–29 Nov Pending
A.7
🧪 QA, Beta & App Store / Play Store Submission QA, closed beta and production release to the App Store and Google Play.
Both Parties 26 Nov → 6 Dec 2026 Pending
Track B — Telemedicine (TeleVisit) · 10 Nov → 17 Dec 2026 · Per Al-Faraby Technical Framework
📘
Aligned with Al-Faraby's Telemedicine Technical Framework

Telemedicine is implemented as a "Virtual Visit" encounter type within the EMR — not a separate system — so scheduling, documentation, prescribing, billing and reporting all reuse the existing HIS workflows. The tasks below directly mirror sections 3, 4 and 5 of the framework document (Telemedicine Services, Clinical Workflow, and Security/Privacy).

#TaskResponsibleDateStatus
B.1
🩺 "Virtual Visit" Encounter Type & Telemedicine Architecture Add Virtual Visit as a first-class encounter type in the EMR, reusing existing scheduling, coding, prescribing and billing.
Dev Team 10–13 Nov Pending
B.2
📥 Patient Initiation & Pre-Visit Workflow (Section 4.1) Patient requests a teleconsultation with a pre-visit questionnaire, document uploads and self-measured vitals.
Dev Team 12–18 Nov Pending
B.3
📅 Virtual Appointment Scheduling & Mandatory Consent (Section 4.2) Schedule virtual appointments with mandatory consent capture and patient identity verification.
Dev Team 16–22 Nov Pending
B.4
📹 Secure Video / Audio + Asynchronous Messaging & File Exchange (Section 3) Secure video consultations and asynchronous messaging with end-to-end encryption and media attached to the patient record.
Dev Team 18–26 Nov Pending
B.5
🧰 In-Consultation Clinical Tools & Remote Diagnostic Devices (Section 4.3) Live EMR access during the call with chat, screen sharing and optional remote diagnostic device integration.
Dev Team 22 Nov → 1 Dec 2026 Pending
B.6
📝 Documentation, ICD-10 Coding, e-Prescriptions & e-Orders (Section 4.4) SOAP notes, ICD-10 diagnoses, e-prescriptions and lab/imaging orders tied to the Virtual Visit encounter.
Dev Team 26 Nov → 6 Dec 2026 Pending
B.7
✅ Encounter Closure: Auto Visit Summary, After-Visit Instructions & Billing (Section 4.5) Auto-generated visit summary, after-visit instructions and automatic ZATCA invoice + NPHIES claim.
Dev Team 30 Nov–8 Dec Pending
B.8
🔐 Security, Privacy & Tamper-Evident Audit Logs (Section 5) End-to-end encryption, secure key management and tamper-evident audit logs aligned with PDPL.
Dev Team 24 Nov → 11 Dec 2026 Pending
B.9
🔗 Integrations: LIS · Radiology · Pharmacy · NPHIES · Payment Gateway Wire telemedicine into lab, radiology, pharmacy, NPHIES and payment integrations via the Integration Hub.
Dev Team 3–13 Dec Pending
B.10
✅ Telemedicine UAT & Clinical Pilot Clinical pilot of the full telemedicine workflow with selected clinics, ending in formal sign-off and go-live.
Both Parties 9–17 Dec Pending
Track C — Homecare Module · 15 Nov → 29 Dec 2026 · Per Al-Faraby Home Care Service Flow Chart
📘
Aligned with Al-Faraby's Home Care Service Flow Chart & Official Forms

The tasks below digitize Al-Faraby's existing home-care workflow exactly as documented: Referral → Initial Screening & Eligibility → Consent + Policy Agreement + Assessment Fee → Initial Home Visit Assessment → Care Plan → Follow-Up Visits + Home Visit Log → Discharge Summary & Final Bill. Each paper form (Initial Client Assessment, Follow-Up Appointments, Home Visit Log) becomes a structured digital screen tied to the patient EMR.

#TaskResponsibleDateStatus
C.1
🏠 Homecare Service Catalogue & Pricing Configure home-care services, pricing, assessment fees, coverage rules and the specialist registry.
Dev Team 15–19 Nov Pending
C.2
📨 Referral Intake & Initial Screening (Step 1–2 of Flow) Capture referrals from multiple channels and auto-create a Home Care Case linked to the patient.
Dev Team 18–23 Nov Pending
C.3
✅ Eligibility Decision & Referral-Source Notification (Step 3) Eligibility checklist with automatic notification of the referral source on rejection.
Dev Team 20–25 Nov Pending
C.4
📝 Consent, Policy Agreement & Assessment-Fee (Initial Deposit) (Step 4) Digital consent, signed policy agreement and ZATCA-compliant assessment-fee receipt.
Dev Team 24–29 Nov Pending
C.5
📅 Schedule Initial Assessment Home Visit + Nurse / Specialist Assignment (Step 5) Dispatcher dashboard for scheduling, routing and assigning the home-care team to each case.
Dev Team 26 Nov → 1 Dec 2026 Pending
C.6
📋 Initial Client Assessment Form — Full Digital Version (Step 6) Full digital version of the official 8-section Al-Faraby Initial Client Assessment form.
Dev Team 30 Nov–7 Dec Pending
C.7
🩺 Care Plan Builder + Multi-Disciplinary Team Assignment Digital care plan with goals, multi-disciplinary team assignment and EMR attachment.
Dev Team 3–9 Dec Pending
C.8
🔁 Follow-Up Appointments Module (Step 7–8) Digital follow-up visit form capturing outcomes, next steps and billing per the official template.
Dev Team 6–13 Dec Pending
C.9
📒 Home Visit Log + Field Staff Mobile App (Step 9) Digital Home Visit Log plus offline-first nurse mobile app for visits, vitals, MAR and e-signatures.
Dev Team 8–17 Dec Pending
C.10
🏁 Treatment Decision: Continue Care vs Close Case (Step 10) Structured decision at each follow-up to continue care or trigger the discharge workflow.
Dev Team 13–17 Dec Pending
C.11
🧾 Discharge Summary, Final Bill & Insurance Claims (Step 11) Auto-generated discharge summary, final ZATCA invoice and NPHIES home-care claim to close the case.
Dev Team 15–24 Dec Pending
C.12
✅ Homecare UAT & Pilot Launch Field pilot of the full home-care flow with real cases, ending in formal sign-off and rollout.
Both Parties 23–29 Dec Pending
Track D — National Login (Nafath) Integration · 2 Nov → 24 Nov 2026
⚠️
Al-Faraby Action Required Before Track D Can Start

Apply for Nafath (National Single Sign-On) Service Provider access via the National Information Center / Absher Business portal. Obtain: (1) Service Provider ID, (2) OAuth 2.0 Client ID & Secret, (3) Authorized callback / redirect URIs, (4) Approved scopes (identity, basic profile). Provide credentials to Thirty Eight Technology before 2 Nov 2026 (Day 1 of Track D, aligned with Phase 4 parallel start).

#TaskResponsibleDateStatus
D.1
🆔 Nafath OAuth 2.0 / OIDC Connector Implement the OpenID Connect connector against Nafath with secure identity claim mapping.
Dev Team 2–6 Nov Pending
D.2
👤 Patient Login via Nafath (Web + Mobile) "Login with Nafath" on patient portal and mobile app with auto-linking by National ID.
Dev Team 5–12 Nov Pending
D.3
🩺 Staff / Provider Login via Nafath Optional Nafath login for Al-Faraby clinical and admin staff, mapped to internal accounts.
Dev Team 10–16 Nov Pending
D.4
🔄 Identity Verification at Registration & TeleVisit Use Nafath verified identity to fast-track patient registration and to authenticate TeleVisit sessions.
Dev Team 15–20 Nov Pending
D.5
✅ Nafath Sandbox & Production Activation Sandbox compliance, security review and production launch with a documented fall-back flow.
Both Parties 20–24 Nov Pending
Phase 4 Integration, December Training & Production Launch · Training 1–19 Dec 2026 · Live Ops 1 Jan 2027
#TaskResponsibleDateStatus
P4.1
🔗 End-to-End Integration of All 4 Tracks Wire Mobile App, Telemedicine, Homecare and Nafath together under a single patient identity, ready for trials & training.
Dev Team 1–9 Dec Pending
P4.2
🎓 Staff Training Program — First Three Weeks of December Structured on-site + online training for all departments (see Training Plan). Runs in parallel with final UAT trials.
Both Parties 1–19 Dec 2026 Pending
P4.3
🧪 Final Trials & Defect Closure End-to-end patient-journey trials with Al-Faraby teams, P0/P1 defect closure and per-track sign-off.
Both Parties 7–26 Dec Pending
P4.4
🚀 Final Sign-Off & Production Launch (Live Operations) Final pre-launch checklist. Live operations begin at the start of 2027 — target Friday 1 January 2027 — followed by hyper-care.
Both Parties 23–31 Dec · Launch 1 Jan 2027 Pending
Phase 4 Deliverables
📱

Patient Mobile App — iOS & Android

Published on App Store & Google Play. Full appointment, results, prescription, payment & insurance card features.

Production
📹

Telemedicine (TeleVisit) Live

Video consultation integrated with EMR, e-prescription & NPHIES billing. MOH-compliant consent flow.

Live
🏠

Homecare Module Operational

Scheduling dashboard, field-nurse mobile app, visit documentation, billing & insurance claims active.

Operational
🆔

Nafath (National Login) Integrated

OIDC connector live in production for both patients and staff. Strong-identity verification across web & mobile.

National SSO
📚

Updated Training & User Guides

Patient-app onboarding video, TeleVisit doctor guide, Homecare nurse SOP, Nafath login FAQ.

Docs v3
📊

Phase 4 Adoption Dashboard

App downloads, active users, TeleVisits/day, Homecare visits/day, Nafath login success rate.

KPIs
⇄
Integration Hub & Architecture
Adapter-based Integration Layer · Compliance Layer · LIS / RIS / PACS · Medical Devices
All
Phases
Cross-Cutting
⇄Integration Layer — Integration Hub
Adapter Architecture

Single entry/exit point for every external interaction. Built on a pluggable adapter pattern — one adapter per external system or protocol. Every message is normalized, validated, queued, retried and logged before it reaches the HIS or leaves it.

🧩
Adapter Architecture
One adapter per external system. Pluggable, isolated, independently versioned.
🔥
FHIR R4 Server
Internal FHIR resources for Patient, Encounter, Observation, Coverage, Claim, MedicationRequest. Validated against NPHIES IG.
🚪
API Gateway
Single ingress: rate-limiting, throttling, request signing, IP allow-listing, version routing.
📡
Webhooks
Outbound event notifications (claim status, payment received, lab result ready) with HMAC signatures & retry.
📨
Queue System
Redis / RabbitMQ-backed asynchronous queues. Retries with exponential backoff, dead-letter queue, idempotency keys.
🔑
OAuth 2.0 / OpenID
Token broker for NPHIES, Nafath, payment gateways, B2B partners. Auto refresh, secure secret vault.
📜
Audit Logs
Immutable, append-only log of every inbound / outbound message with payload, status, latency, user. PDPL-grade traceability.
↕
🛡️Compliance Layer — Saudi Regulatory Integrations

All four mandatory Saudi-Arabia regulatory connections are implemented as dedicated adapters inside the Integration Hub — never as direct calls from clinical or billing modules.

🏥
NPHIES
All transaction types over OAuth 2.0 + FHIR R4: eligibility, prior-auth, claim, resubmission, cancellation, communication, payment, newborn.
🧾
ZATCA (Direct from HIS)
E-invoicing Phase 1 & 2 submitted directly from the HIS to Fatoora (TLV QR, UUID, XML, Simplified & Standard). Not routed through Odoo. Odoo Accounting receives posted journals only.
💊
SFDA
RASAD platform for narcotic & controlled substance tracking. Drug catalogue sync (GTIN, SFDA codes), batch & expiry reporting, drug recalls.
🏛️
CHI
Council of Health Insurance code mapping (SBS, CCHI 14 categories), payer-code registry, coverage-rule alignment, regulatory reports.
↕
🔬Labs & Medical Devices — LIS / RIS / PACS
HL7 v2 · FHIR · DICOM

Bidirectional integration with on-site hardware: lab analyzers send results back automatically; imaging modalities push studies to PACS; the HIS receives results & image links and posts them to the encounter and the patient app.

🧪
Lab Analyzers (LIS)
Bidirectional ASTM / HL7 v2 ORM/ORU with chemistry, hematology, immunoassay analyzers. Order download, barcode pickup, result upload with H/L/HH/LL flags.
🩻
Radiology Modalities (RIS)
DICOM Modality Worklist (MWL) push to X-Ray, CT, MRI, US, Mammo. MPPS for workflow status, structured reports back to encounter.
🖼️
DICOM
C-STORE / C-FIND / C-MOVE for studies. WADO-URI / WADO-RS for in-app image viewing. Study metadata indexed and linked to patient record.
📋
HL7 v2 (MLLP & FHIR Bridge)
ADT, ORM, ORU, MDM, SIU messages over MLLP. Auto-converted to internal FHIR resources by the HL7 adapter. LOINC/SNOMED mapping.
🗄️
PACS Servers
Connection to existing or new PACS (Orthanc, dcm4chee, vendor PACS). Long-term DICOM archive, study retrieval, viewer launch from EMR.
💗
Vital-Sign & POC Devices
Optional adapters for BP monitors, ECG, pulse oximeters, glucometers. Direct write to Vital Signs module — no manual entry.
Module ↔ Integration Matrix

For every HIS module, the table below lists the exact external systems it integrates with. All connections go through the Integration Hub adapters described above — no module talks directly to an external party.

HIS Module Integrations
👤Patient Registration
Nafath (National ID lookup) NPHIES Beneficiary Discovery SMS Gateway (OTP) Audit Logs
📅Appointments
SMS Gateway (reminders) APNs / FCM Push Patient Portal API Audit Logs
💗Vital Signs
POC Devices: BP · ECG · SpO2 · Glucometer FHIR Observation (LOINC) HL7 v2 Bridge
🩺Doctor System / EMR
FHIR R4 Server (internal) HL7 v2 Bridge (ADT/MDM) NPHIES (eligibility · prior-auth) Audit Logs
🔬Laboratory
Lab Analyzers (ASTM / HL7 v2 ORM & ORU) FHIR Observation (LOINC) SMS / Push (critical results) Patient Portal API
🩻Radiology
RIS · Modality Worklist (DICOM MWL · MPPS) PACS (C-STORE · C-FIND · C-MOVE) DICOM Viewer (WADO-URI · WADO-RS) FHIR DiagnosticReport
💊Pharmacy
Native HIS Pharmacy Module SFDA / RASAD (narcotic tracking) Drug Catalogue (SFDA · GTIN · NDC) FHIR MedicationRequest Patient Portal / Mobile (e-Rx delivery)
🧾POS — Pharmacy
Native HIS stock decrement · barcode ZATCA direct from HIS (e-invoice + QR) Payment Gateway (Mada · Apple Pay · cash) RASAD (controlled-substance log)
📦Inventory / Warehouse
Native HIS Warehouse (stock · batches · transfers) SFDA Drug Catalogue Sync RASAD Batch & Expiry Reporting Odoo Accounting (financial sync only)
🛡️Insurance Management
NPHIES — All Transactions (OAuth 2.0 · FHIR R4) CHI (SBS · CCHI codes · Payer Registry) FHIR Coverage / Claim / ClaimResponse
💳Invoicing
ZATCA Fatoora — direct from HIS (not via Odoo) Odoo Accounting (journal / GL post only) Payment Gateway (Mada · Apple Pay · Google Pay) NPHIES Payment Posting Audit Logs
📱Patient Mobile App (iOS & Android)
Nafath (login & identity) APNs (iOS) + FCM (Android) Payment Gateway (in-app) Patient Portal API App Store / Play Store
📹Telemedicine (TeleVisit)
WebRTC (Twilio / Agora / Jitsi) Nafath (identity verification) NPHIES (TeleVisit service code) Payment Gateway (copay) Pharmacy / LIS / RIS (e-orders) Audit Logs (tamper-evident)
🏠Homecare
Field Mobile App (offline-first sync) SMS / Push (visit confirmations) Payment Gateway (assessment fee) NPHIES (homecare service codes) ZATCA (final invoice)
⚙️System Settings & Administration
OAuth 2.0 / OpenID Broker Nafath (staff SSO — optional) Secret Vault Audit Logs
📊Reports
All Modules (read-only feeds) CHI Regulatory Reports ZATCA Submission Reports Excel / PDF Export
☁️Hosting / Infrastructure
Saudi Cloud Computing (sccc) — PIF · Riyadh & Jeddah DCs PostgreSQL HA Cluster Redis / Queue Workers WAF + SSL
🌐
Language & Localization Support
Bilingual Arabic + English with full Right-to-Left (RTL) UI across HIS, Patient Mobile App and Web Portal
AR + EN
Bilingual
RTL · LTR
🖥️

HIS Web Application

Staff workstations · Backoffice
🇸🇦Arabic ar-SA RTL
🇬🇧English en-US LTR
📅 Calendar Hijri + Gregorian Dual
📱

Patient Mobile App

iOS & Android — native
🇸🇦Arabic ar-SA RTL
🇬🇧English en-US LTR
🔔 Notifications APNs / FCM Localised
💻

Patient Web Portal

Browser — desktop & mobile
🇸🇦Arabic ar-SA RTL
🇬🇧English en-US LTR
📄 Printed PDFs Invoice · Rx · Reports Bilingual
✅
Built-In, Not Bolted-On

Arabic + RTL is not a separate phase — it is implemented inside every task in Phases 1–4. UAT in Phase 3 explicitly validates Arabic rendering on every screen, every PDF and every notification. The patient mobile app is published to the App Store and Google Play with Arabic as the default language for users with an Arabic device locale.

🎓
Training Program
Three-week December program — On-site (physical) + Online · First three weeks of Dec 2026
~18
Working Days
1 Dec → 19 Dec 2026
📚
Training Approach

Training runs in the first three weeks of December 2026 (1–19 Dec), immediately before live operations at the start of 2027. Staff train on the same environment they will use in production. Sessions combine on-site instructor-led training at Al-Faraby Medical Complex with online live sessions for finance, reporting and management. Pharmacy, warehouse and ZATCA workflows are taught as native HIS modules (Odoo is covered only for accounting handoff). Every session is recorded; guides and a video library remain available after go-live.

🏥

On-Site (Physical) Training

Hands-on, instructor-led sessions held at Al-Faraby Medical Complex. Clinical and operational staff use the live system on their actual workstations with role-based logins. Ideal for reception, doctors, nurses, lab/radiology technicians, pharmacists, warehouse and cashiers.

Location: Al-Faraby Complex Group size: 6–10 / class Live system practice
💻

Online (Live) Training

Remote live sessions over Microsoft Teams / Zoom for management, finance, insurance, reporting, dashboards and refresher Q&A. Sessions are recorded and uploaded to an internal training library for replay and onboarding new staff after go-live.

Platform: Teams / Zoom All sessions recorded Replayable post go-live
📖

Materials & Certification

Each track ships with a printed quick-reference guide (Arabic + English), short how-to videos, and a final knowledge-check. Trainees who complete their track receive a Certificate of Completion issued by Thirty Eight Technology. Two on-site super-users per department are appointed to support peers post-launch.

AR + EN guides Video library Super-users / dept.
Week 1 — Core Clinical & Front-Office (Tue 1 → Sat 5 Dec 2026)
DateSessionAudienceFormatHours
Tue 1 Dec
Kick-off & HIS Overview — navigation, login, roles, security, password & 2FA policy
All staff (auditorium)
🏥 On-Site
2h
Wed 2 Dec
Reception, Appointments, Check-in & Patient Registration workflow
Reception & front-desk
🏥 On-Site
4h
Thu 3 Dec
Insurance verification, eligibility check & NPHIES pre-authorization
Reception & insurance team
🏥 On-Site
4h
Sat 5 Dec
Doctor System & EMR — encounter notes, vitals, diagnosis (ICD-10), e-prescriptions, e-orders
Physicians & nurses
🏥 On-Site
4h
Week 2 — Clinical Ops, Pharmacy & Warehouse (Sun 6 → Sat 12 Dec 2026)
DateSessionAudienceFormatHours
Sun 6 Dec
Specialty workflows — Dental, Eye, Orthopedic, Dermatology templates
Specialty consultants
🏥 On-Site
4h
Mon 7 Dec
Laboratory & Radiology — orders, sample tracking, results, PACS review
Lab & radiology technicians
🏥 On-Site
4h
Tue 8 Dec
Pharmacy module (native HIS) — catalogue, dispensing, refills, SFDA RASAD
Pharmacists
🏥 On-Site
4h
Wed 9 Dec
Warehouse & Inventory (native HIS) — locations, batches, transfers, expiry — not Odoo stock
Pharmacy & store keepers
🏥 On-Site
4h
Thu 10 Dec
Insurance back-office — NPHIES claims, rejections & resubmission
Insurance & claims team
🏥 On-Site
4h
Sat 12 Dec
POS Pharmacy + cashier desk practice (HIS stock decrement + ZATCA receipt)
Cashiers & pharmacists
🏥 On-Site
3h
Week 3 — Finance, ZATCA, Reporting & Go-Live Prep (Sun 13 → Sat 19 Dec 2026)
DateSessionAudienceFormatHours
Sun 13 Dec
Invoicing & ZATCA — direct HIS → Fatoora (not via Odoo); daily closing
Cashiers & finance
🏥 On-Site
4h
Mon 14 Dec
Odoo Accounting handoff only — journals / GL sync from HIS (no warehouse in Odoo)
Finance & accounting
💻 Online
3h
Tue 15 Dec
Reports, KPIs & Dashboard — operational, clinical and financial views
Managers & department heads
💻 Online
3h
Wed 16 Dec
Patient Mobile App, Telemedicine & Homecare orientation
All staff + super-users
💻 Online
3h
Thu 17 Dec
Super-user clinic — floor scenarios, escalation path, go-live checklist
Super-users / dept.
🏥 On-Site
4h
Sat 19 Dec
Open Q&A + refresher — readiness for live operations (1 Jan 2027)
All trained staff
💻 Online
2h
✅
Post-Training Support

After the December program, a floor-walking support team from Thirty Eight Technology stays on-site through late December and the first weeks of January 2027 hyper-care as live operations begin. A dedicated support hotline + Teams channel remains open for instant questions before and after the 1 January 2027 production launch.