Skip to main content

Member Portal β€” Settings

Overview​

The Settings page is the control center for a patient's ChartChat account. It allows patients to manage hospital connections, configure security options, and view account information.

URL: /settings


Page Sections​

SectionDescription
Hospital ConnectionsConnect, sync, and disconnect hospitals
Privacy & SecurityManage password, 2FA, and session timeout
About ChartChatApp version and compliance information

Hospital Connections​

This section lists all hospitals you have connected to ChartChat and allows you to connect new ones.

Connected Hospital Actions​

Each connected hospital shows two action buttons:

ButtonWhat it does
SyncTriggers a background data refresh for that hospital. A loading spinner appears while the sync runs. A notification confirms success or failure when complete.
DisconnectOpens a confirmation modal. After confirming, the connection is removed. Records already synced remain visible but will no longer update.

Connect a Hospital​

  1. Click Connect Hospitals
  2. The Hospital Picker modal opens
  3. Search for your hospital by name, or filter by State, City, or Zip Code
  4. Click Connect on the hospital you want to link
  5. You are redirected to that hospital's patient portal login page
  6. Log in with your patient portal credentials and grant access
  7. You are redirected back to ChartChat and the hospital appears in your connected list

Healow hospitals only: ChartChat verifies you are connecting from within the United States before redirecting. If your location cannot be confirmed as US, the connection is blocked with an error message.

Hospital search tips​

  • Typing a name searches across all hospitals in the system (results appear after a short pause)
  • Selecting a State loads all hospitals in that state; you can then filter by City or Zip without additional loading
  • Scroll to the bottom of results to load more hospitals automatically (infinite scroll)

Privacy & Security​

Password​

Description: "Set or change your password. Also enables email & password login alongside Google."

  1. Click Send Reset Link
  2. A confirmation modal appears:

    "A password reset link will be sent to your registered email address."

  3. Click Send Reset Link in the modal
  4. A reCAPTCHA verification runs silently in the background
  5. A reset email is sent to your registered address
  6. The button label changes to show Email sent in green

Check your inbox and follow the link to set your new password. The link is single-use and time-limited.


Session Timeout​

Description: "Automatically log out after inactivity"

Select how long the app waits before automatically signing you out:

  • 15 minutes
  • 30 minutes
  • 60 minutes (default)
  • 4 hours

Two-Factor Authentication (2FA)​

Adds an extra layer of security by requiring a one-time code from an authenticator app every time you sign in.

Current Status​

StateDisplay
EnabledGreen Enabled badge with shield icon
DisabledNo badge, Enable 2FA button shown
Loading"Checking status…"

Enable 2FA​

  1. Click Enable 2FA
  2. An enrollment modal opens showing a QR code

Step 1 β€” Scan QR Code:

  • Open your authenticator app (Google Authenticator, Authy, etc.)
  • Tap Add account and scan the QR code
  • If you cannot scan the code, a manual secret key is shown below the QR code
  • Click Next to proceed

Step 2 β€” Verify Code:

  • Enter the 6-digit code shown in your authenticator app
  • Click Verify & Activate
  • If the code is correct, 2FA is activated:

    "Two-factor authentication is now active on your account."

  • If the code is wrong:

    "Invalid code. Please try again."

Disable 2FA​

  1. Click Disable 2FA
  2. A confirmation modal opens
  3. Enter the 6-digit code from your authenticator app
  4. Click Disable 2FA in the modal
  5. On success:

    "Two-factor authentication has been removed from your account."


About ChartChat​

Informational section β€” no interactive elements.

FieldValue
VersionChartChat v1.0
StandardSMART on FHIR
InfrastructureBuilt on Open-Source FHIR Server
ComplianceHIPAA Compliant β€’ Read-Only Access
AI TechnologyPowered by RAG (Retrieval-Augmented Generation)

Notifications Summary​

ActionColorMessage
Hospital sync startedBlue"Fetching latest data in the background."
Hospital sync failedRed"Could not sync. Please try again."
2FA enabledGreen"Two-factor authentication is now active on your account."
2FA disabledOrange"Two-factor authentication has been removed from your account."
Healow geo-blockedRed"Healow connections are only available in the United States."