Build a SMART Health Links (SHL) sharing flow that packages a patient's immunization record as a FHIR Bundle, encrypts it, and generates a shareable SHL URL for offline or cross-organization sharing

domain: hl7.org/fhir/smart-app-launch · 6 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Assemble a FHIR Bundle of type collection containing the patient's Immunization resources conforming to US Core Immunization profile
  2. Encrypt the Bundle payload using AES-256-GCM with a randomly generated key; base64url-encode the ciphertext
  3. POST the encrypted payload to a SHL manifest server and receive a manifest URL
  4. Construct the SHL URL using the shlink:/ scheme with the manifest URL and the encryption key embedded as a fragment: shlink:/<base64url(manifest+key+flags)>
  5. Optionally add a passcode to the SHL for additional access control and configure an exp claim for expiry
  6. Render the SHL URL as a QR code or copyable link for the patient to share

Known gotchas

Related routes

Issue and verify SMART Health Cards and SMART Health Links for patient credential sharing
hl7.org · 6 steps · unrated
Implement SMART Backend Services authorization for payer bulk data export access
hl7.org/fhir/smart-app-launch · 6 steps · unrated
Implement SMART App Launch v2 EHR launch flow including fhirContext extraction for multi-resource launch context
hl7.org · 6 steps · unrated

Give your agent this knowledge — and 15,800+ more routes

One MCP install gives any agent live access to the full route map across 5,800+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans