TriageOS TriageOS
WHO IMCI-referenced protocol engine for community health workers. Runs entirely offline on any device. All records encrypted on-device with AES-256-GCM. Zero data transmitted to any server.
Μηχανη πρωτοκολλου αναφορας WHO IMCI για κοινοτικους επαγγελματιες υγειας. Λειτουργει πληρως εκτος συνδεσης. Ολες οι εγγραφες κρυπτογραφουνται στη συσκευη.
Built for the absolute edge
No connectivity required. No cloud dependency. Works on any device, in any condition.
Select protocol
Choose the relevant WHO IMCI protocol or run a full patient assessment. No setup, no login required after first use.
Answer prompts
The engine guides you through the clinical decision tree. Each question maps directly to WHO IMCI criteria.
Get outcome and record
Receive a clear, evidence-based recommendation. Save the encounter as an encrypted local record.
What makes it different
AES-256-GCM encryption
Every record is encrypted on-device before storage using PBKDF2-derived keys. Unreadable without the local device salt. Tamper-evident SHA-256 hash chain.
Fully offline
Service worker caches all assets. Works without internet, without cellular, on any Android or iOS device from the browser. No app store required.
WHO IMCI decision engine
Deterministic rule core hard-coded to WHO IMCI guidelines. 100% confidence because it is protocol logic, not machine learning. It does not learn how to diagnose.
Behavioral confidence scoring
Micro-time fingerprinting flags rushedly completed triages. Every record carries a confidence index. Sells verified, audited data to health ministries, not raw numbers.
FHIR R4 and DHIS2 export
Export any session as a standard HL7 FHIR R4 Bundle or DHIS2-compatible JSON. Plugs directly into national health information systems.
TAP Engine
Extended screening protocol for patients with active neural implant devices. Generates a cryptographic SHA-256 tamper-evident record of the assessment. Lives in its own panel inside the app.
Built for legal clarity
The architecture is specifically designed to address GDPR, WHO interoperability requirements, and SaMD classification concerns.
GDPR compliance by architecture
All PHI stays on the worker's device. The hosting provider (static file CDN) never processes patient data -- no Business Associate Agreement required. Right to deletion is a one-button local database wipe. First-use consent is logged with timestamp.
Not a Software as a Medical Device
TriageOS is a Clinical Decision Support Tool (CDST). Under FDA guidance, CDSTs that present WHO guideline information and require clinical practitioner interpretation are generally not regulated as SaMD. Final clinical judgment always rests with the health worker.
WHO interoperability ready
Records export as HL7 FHIR R4 Bundles with SNOMED CT coding. DHIS2-compatible JSON export is built in. The deterministic decision engine is open to peer review. Clinical test suite is in development.
Session security
2-minute idle timeout automatically wipes in-memory triage state. Records remain encrypted in local storage. Workers re-confirm to resume. No biometric or password required -- designed for low-end hardware.
How TriageOS compares
| Feature | TriageOS | CommCare | ODK | Paper IMCI |
|---|---|---|---|---|
| Fully offline (no connectivity needed) | Yes | Yes | Yes | Yes |
| On-device encryption at rest | Yes -- AES-256-GCM, PBKDF2 key | Yes -- AES-256, key tied to CommCare login password | Optional -- must be configured per form | N/A |
| PHI ever transmitted to external server | Never -- stays on device only | Yes -- syncs to CommCare cloud on reconnect | Yes -- syncs to ODK Central on reconnect | Never |
| WHO IMCI decision logic built in | Yes -- hardcoded deterministic engine | Configurable -- must be built by implementer | Configurable -- form design only, no logic engine | Yes |
| HL7 FHIR R4 export | Yes -- generated on device, downloaded locally | Pro plan and above only | No native FHIR export | No |
| DHIS2-compatible export | Yes -- generated on device, downloaded locally | Yes -- via MOTECH integration module | Yes -- via ODK Central API + DHIS2 connector | No |
| Behavioral data confidence scoring | Yes -- micro-time fingerprinting, built in | No | No | No |
| GDPR deletion of patient records | Yes -- single-button local wipe, instant | Via provider -- requires contacting Dimagi support | Via provider -- depends on hosting arrangement | N/A -- physical destruction of paper |
| Runs in browser, no app install | Yes -- PWA, any Android / iOS browser | No -- requires CommCare Collect Android app | No -- requires ODK Collect Android app | N/A |
| Cost to field worker / NGO | Free | Free Standard tier / paid plans from $120/mo | Free self-hosted / paid managed from $199/mo | Free |
Run your first triage
No login. No internet. No server. Open the app, answer the prompts, get a WHO-referenced recommendation.