Trace every API capability to its contract, control owner, public source and executable evidence.
The Assurance Graph connects each public API operation to an accountable capability, control owner, governing source and executable evidence artifact. It gives insurer, government, regulator, security and engineering reviewers one path from a public statement to the contract and test that support it.The graph describes verified Heyrafiki behavior. It does not claim regulatory approval, certification or partnership.
IRA governs insurance supervision, market conduct and policyholder protection. Heyrafiki records the Claims, decision, communication, financial and audit evidence an accountable insurer can inspect. Heyrafiki does not become the insurer or supervisory authority.
Ministry of Health and Digital Health Agency
DHA defines digital health certification and national exchange requirements. Heyrafiki keeps registry identifiers, coded data, Consent, audit and adapter versions explicit at this boundary.
Counsellors and Psychologists Board
CPB remains authoritative for counsellor and psychologist registration and licensing. Heyrafiki records the source observation, category, licence period and freshness separately from a Platform Care-eligibility decision.
eCitizen and GavaConnect
These are approved government access and integration paths. They do not become the authority for clinical facts, insurance decisions or Heyrafiki ledger state.
The graph maps 30 public operations into 10 accountable capabilities and 9 controls. It covers API discovery, Practitioners, Bookings, Sessions, eligibility, Coverage, pre-authorization, Claims, remittance and Webhooks.
Run the benchmark
Reproduce four suites and five adversarial mutation checks from the public manifest.
Open the graph
Inspect the machine-readable capability, source, control and evidence links.
Read the schema
Validate the graph independently with JSON Schema 2020-12.
git clone https://github.com/heyrafiki/openapi.gitcd openapinpm cinpm test
The suite validates the OpenAPI contract, financial invariants, the bitemporal Claim valuation timeline and graph referential integrity.
API discovery and the public evidence repository are open. Sandbox operations use a sandbox key. Institutional capabilities use scoped Organization grants with separately approved production authority.Create a key in the Developer Platform if your Organization has access. Otherwise request access and review the synthetic pilot acceptance plan now.
The open conformance system provides a reproducible base for research in reported Claim development, mental-health Benefit utilization, provider-network capacity, privacy-constrained aggregation and Consent-aware computation. A research claim requires a formal problem, stated assumptions, baseline methods, reproducible synthetic or approved data, evaluation results and expert review.That boundary is deliberate. The graph makes a new hypothesis testable; it does not label an untested idea as new mathematics.