Owners
Accounts that can sign in and manage this customer. Staff never appear here — they use the Navi app.
Remote audio
—
Extractions
—
Signed sessions
—
Spend · last 14 days
Latest sessions
| Worker | Form | Status |
|---|
| Name | Fields | Version | Id |
|---|
Devices pick up published forms on next sync. New opens the editor — describe the form and let the agent draft it, or add fields by hand.
| Name | Members | Forms | Default form |
|---|
| Name | Teams | Patients |
|---|
| Patient | Code | Encounters | Forms gathered |
|---|
Each patient's profile aggregates what the nurses' cards captured about them. Click a patient to see their sessions and cards.
| Name | Person | Enrolled | Origin |
|---|
A device is enrolled to one person and gets its own token; the app receives the forms of every team that person belongs to.
Providers
API keys stay on the server (referenced by environment variable), never on devices.
Routing
| Date | Time | Nurse | Patient | Note | Status |
|---|
A planned visit counts as done when a visit note for that patient arrives on that day; a past one with no note is missed. Nurses see their own visits on the app's Home for that date.
Action items the shift reports called out, and what the
nurse did with each on her phone. Ticking one here records who closed it
and when — the nurse's own accept and dismiss come from the app and are
shown as hers.
| When | Patient | Nurse | Form | What was recorded | Attested |
|---|
You don't have permissions to see the audit trail
Every signature and device event is still being recorded.
Ask the platform owner if you need a copy.
| When | Event | Who | What | Device | Established by |
|---|
What this trail does not cover
There is no event log behind this page: every row is
derived from a timestamp already stored on a record. Anything without such a timestamp
cannot appear here, and is listed so an empty stretch is never read as a quiet one.
| Received | Worker | Patient | Form | Status | Length | Signed by | Flags |
|---|
| Recording | When | Size |
|---|
Always-on audio the pendant/app banked to the cloud (per-tenant, capped at 2 GB). Time-stamped segments — not yet linked to a specific session.
By person
| Person | Sessions | AI-filled | Completion | Required | Flags | Audio |
|---|
By team
| Team | Sessions | AI-filled | Completion | Required | Flags | Audio |
|---|
By form
| Form | Sessions | AI-filled | Completion | Required | Flags | Audio |
|---|
By device
| Device | Sessions | AI-filled | Completion | Required | Flags | Audio |
|---|
By object
| Object | Sessions | AI-filled | Completion | Required | Flags | Audio |
|---|
AI-filled = sessions where extraction ran. Completion = filled fields / form fields, averaged over those AI-filled sessions. Field fill shows which questions never get answered — candidates to drop, or to switch the form to guided.
Every session for the chosen form, one column per field. Export CSV for spreadsheets.
| Name | Key | Created | By |
|---|
A key lets your own systems read this workspace's notes, transcripts and
patient list over the API. It is read only — a key can never change anything, and it
cannot reach recordings. The key itself is shown once, when you create it: we store only a
hash of it, so nobody, including us, can show it to you again. Revoked keys stay listed,
because what a key did is part of the record.
| Endpoint | Last delivery | Added | By |
|---|
Tell your own systems the moment a nurse signs a note, instead of asking
them to poll for it. We POST to the address you give here and it carries
identifiers only — which note, which patient, which form, who signed it and how.
No clinical text ever leaves over this channel; the receiver reads the note itself with an
API key, so it is your credential, not ours, that decides what it may see.
Every delivery is signed. X-Xari-Signature is sha256= an HMAC over <timestamp>.<body>, using the secret we show you once when you add the endpoint, and X-Xari-Timestamp carries that timestamp — so a receiver can tell our delivery from anyone else's, and can reject a replayed one by refusing a timestamp it has already seen. That last part is the receiver's to do: we sign the timestamp, we do not remember it for them. HTTPS only, and we never follow a redirect.
A failed delivery is not retried and is not queued: the column above says what the endpoint last answered, and how many times in a row it has failed. Turning an endpoint off leaves it listed, because what was sent where is part of the record.
Every delivery is signed. X-Xari-Signature is sha256= an HMAC over <timestamp>.<body>, using the secret we show you once when you add the endpoint, and X-Xari-Timestamp carries that timestamp — so a receiver can tell our delivery from anyone else's, and can reject a replayed one by refusing a timestamp it has already seen. That last part is the receiver's to do: we sign the timestamp, we do not remember it for them. HTTPS only, and we never follow a redirect.
A failed delivery is not retried and is not queued: the column above says what the endpoint last answered, and how many times in a row it has failed. Turning an endpoint off leaves it listed, because what was sent where is part of the record.
| Name | Since |
|---|
Admins operate this console. They are not the Staff who fill forms on devices.
| Name | Tenants | Contact |
|---|
Platform plane (root token only). A customer's admin token opens every tenant they own in this same console, and lets them create new tenants for themselves. Tenant staff never sign in here — they use the Navi app only.
Model providers you offer. API keys live in the server env (referenced by key env) — never stored here.
| Provider | Kind | Endpoint / model | Key env | |
|---|---|---|---|---|
| No providers yet. | ||||
Availability by customer
Tick which providers each customer may use for their tenants.
No customers yet.