Member Portal β Settings
Overviewβ
The Settings page is the control center for a patient's ChartChat account. It allows patients to manage hospital connections, configure security options, and view account information.
URL: /settings
Page Sectionsβ
| Section | Description |
|---|---|
| Hospital Connections | Connect, sync, and disconnect hospitals |
| Privacy & Security | Manage password, 2FA, and session timeout |
| About ChartChat | App version and compliance information |
Hospital Connectionsβ
This section lists all hospitals you have connected to ChartChat and allows you to connect new ones.
Connected Hospital Actionsβ
Each connected hospital shows two action buttons:
| Button | What it does |
|---|---|
| Sync | Triggers a background data refresh for that hospital. A loading spinner appears while the sync runs. A notification confirms success or failure when complete. |
| Disconnect | Opens a confirmation modal. After confirming, the connection is removed. Records already synced remain visible but will no longer update. |
Connect a Hospitalβ
- Click Connect Hospitals
- The Hospital Picker modal opens
- Search for your hospital by name, or filter by State, City, or Zip Code
- Click Connect on the hospital you want to link
- You are redirected to that hospital's patient portal login page
- Log in with your patient portal credentials and grant access
- You are redirected back to ChartChat and the hospital appears in your connected list
Healow hospitals only: ChartChat verifies you are connecting from within the United States before redirecting. If your location cannot be confirmed as US, the connection is blocked with an error message.
Hospital search tipsβ
- Typing a name searches across all hospitals in the system (results appear after a short pause)
- Selecting a State loads all hospitals in that state; you can then filter by City or Zip without additional loading
- Scroll to the bottom of results to load more hospitals automatically (infinite scroll)
Privacy & Securityβ
Passwordβ
Description: "Set or change your password. Also enables email & password login alongside Google."
Send a Password Reset Linkβ
- Click Send Reset Link
- A confirmation modal appears:
"A password reset link will be sent to your registered email address."
- Click Send Reset Link in the modal
- A reCAPTCHA verification runs silently in the background
- A reset email is sent to your registered address
- The button label changes to show Email sent in green
Check your inbox and follow the link to set your new password. The link is single-use and time-limited.
Session Timeoutβ
Description: "Automatically log out after inactivity"
Select how long the app waits before automatically signing you out:
- 15 minutes
- 30 minutes
- 60 minutes (default)
- 4 hours
Two-Factor Authentication (2FA)β
Adds an extra layer of security by requiring a one-time code from an authenticator app every time you sign in.
Current Statusβ
| State | Display |
|---|---|
| Enabled | Green Enabled badge with shield icon |
| Disabled | No badge, Enable 2FA button shown |
| Loading | "Checking statusβ¦" |
Enable 2FAβ
- Click Enable 2FA
- An enrollment modal opens showing a QR code
Step 1 β Scan QR Code:
- Open your authenticator app (Google Authenticator, Authy, etc.)
- Tap Add account and scan the QR code
- If you cannot scan the code, a manual secret key is shown below the QR code
- Click Next to proceed
Step 2 β Verify Code:
- Enter the 6-digit code shown in your authenticator app
- Click Verify & Activate
- If the code is correct, 2FA is activated:
"Two-factor authentication is now active on your account."
- If the code is wrong:
"Invalid code. Please try again."
Disable 2FAβ
- Click Disable 2FA
- A confirmation modal opens
- Enter the 6-digit code from your authenticator app
- Click Disable 2FA in the modal
- On success:
"Two-factor authentication has been removed from your account."
About ChartChatβ
Informational section β no interactive elements.
| Field | Value |
|---|---|
| Version | ChartChat v1.0 |
| Standard | SMART on FHIR |
| Infrastructure | Built on Open-Source FHIR Server |
| Compliance | HIPAA Compliant β’ Read-Only Access |
| AI Technology | Powered by RAG (Retrieval-Augmented Generation) |
Notifications Summaryβ
| Action | Color | Message |
|---|---|---|
| Hospital sync started | Blue | "Fetching latest data in the background." |
| Hospital sync failed | Red | "Could not sync. Please try again." |
| 2FA enabled | Green | "Two-factor authentication is now active on your account." |
| 2FA disabled | Orange | "Two-factor authentication has been removed from your account." |
| Healow geo-blocked | Red | "Healow connections are only available in the United States." |