Healthcare extensions

PHI Redaction Engine, Shift-Based Scheduler, and Compliance Audit Logger.


These are tools, not a compliance guarantee

These extensions help a healthcare team handle sensitive information and keep a defensible record. They do not make Noots — or your workspace — certified or compliant with any standard, and Noots makes no such claim. How you configure and use them, and whether that meets your obligations, remains your organization's decision.

PHI Redaction Engine

Scrubs protected health information out of meeting output: transcripts, summaries, action items, task titles created from meetings, and RAID entries. There's nothing to do per meeting — it just runs. Org settings gets a Redaction log showing what categories were found and how many.

Masking style
Replace with a label such as [PATIENT NAME] (or a solid block).
Also scrub task titles and descriptions
On.
What it is and isn't

It uses deterministic patterns, not a model, so it is predictable and repeatable — and ordinary text survives untouched ("Order 12 beds", task keys, "Dr. Martens boots"). Two honest limits: an identifier introduced by an unusual phrase can be missed, and scrubbing runs shortly after the meeting is stored, not before.

Shift-Based Scheduler

Replaces 9-to-5 logic with rotating shift blocks, built in Org settings → Shift patterns. Once it's on, three things follow the rota rather than office hours: the availability checker, Autopilot's scheduling, and the presence dot next to a person's name.

Default shift length
12 hours.
Default rotation length
14 days.
The roster
Compiled automatically from the patterns — edit the patterns, not the roster.
Note

A rostered day off means not working. Somebody who isn't on the rota at all keeps their own work hours — the extension has no opinion about them rather than guessing. A broken rota also falls back to ordinary hours; it never invents an answer.

Tip

For the presence dot to follow the rota, that person also needs Follow my work schedule turned on in their own notification settings — see Presence & status.

Compliance Audit Logger

An append-only record of decisions, approvals and access events, viewable and exportable as CSV or JSON from Org settings → Compliance log. Append-only is enforced by the database itself, which refuses updates and deletes outright — not by convention.

Retention (years)
7.
Plan
Audit log is on the Business plan and above.
Retention is a stated policy, not a deletion job

Nothing currently purges old entries — the retention figure records what your policy is. If you need enforced deletion, that isn't here yet, and the screen says so too.

Still stuck? Open a support ticket and we'll help you out — tracked right inside Noots.