Referral and prior-authorisation tracking
Queues by specialty with ageing, record requests and authorisation status in one place.
Healthcare
Referral queues, staff scheduling, prior-auth tracking, supply counts: the work around the EHR still runs on spreadsheets. Describe the tool and ToolJet builds it on your operational data, with configurable row-level access and platform audit logs. For PHI-sensitive use, review the deployment, model endpoint and integrations with your privacy team before connecting patient data.
| Referral | Specialty | Received | Status |
|---|---|---|---|
| Cardiology consult · Ward 4 | Cardiology | 22 Sep | Scheduled |
| MRI · outpatient | Radiology | 23 Sep | Awaiting auth |
| Physio · post-op | Rehabilitation | 23 Sep | Scheduled |
| Oncology review | Oncology | 24 Sep | Escalated |
Flag any referral not scheduled within 5 working days and notify the coordinator for that specialty
Ageing rule and notification workflow added · awaiting your review
No engineering ticket needed
Type what you want in plain language. ToolJet generates the pages, queries and logic as a working app. Connect your data, set who can see what, and review the generated logic before publishing. Edit the app on the canvas afterwards.
Built on the systems healthcare operations teams already run
Have developers? They can build the same apps fromthrough the ToolJet plugin
Operational tooling around the EHR, not a replacement for it.
Queues by specialty with ageing, record requests and authorisation status in one place.
Shift boards with coverage gaps, swap requests and approvals, connected to your HR and rostering data.
Caseloads, follow-ups and outreach outcomes for care managers, scoped so each sees only their patients.
Par levels, expiries and reorder drafts across departments and sites.
Structured incident capture with owners, severity and resolution tracking, exportable for review.
Participant tracking, visit schedules and document status for research teams.
Self-host in your VPC, on-premise or air-gapped. Air-gapped operation requires the Self-hosted Enterprise air-gapped add-on. Local AI requires the customer-hosted AI gateway add-on with a supported local model.
Admins connect your databases, integration engine or FHIR endpoints once, over REST or direct connections. Builders never see secrets.
Care managers see their caseload; coordinators see their specialty. Row-level security is set as part of the build.
Privacy and IT review queries and permissions in staging. Release with version history and rollback.
Built in, not bolted on
Your privacy programme needs minimum-necessary access, encryption and an audit trail. ToolJet is SOC 2 Type II, ISO 27001 and GDPR, and you choose where it runs. Talk to us about your specific regulatory requirements.
SAML, OIDC and LDAP on Team and above. Enterprise adds SCIM provisioning and directory group sync.
Row-level security and query-level permissions limit each role to the records its work requires.
Platform events with actor, resource and timestamp; configurable retention; export to your SIEM.
Self-host in your environment and review network, encryption and model-provider settings with your privacy team. Self-hosting alone does not make external AI requests local.
Security and governance features vary by plan. Workflows and Agent Builder are available on Self-hosted only; BYOK is available on Enterprise plans for both Cloud and Self-hosted. Compare plan availability.
Two ways to get there
Self-serve
Start free. Describe the tool, refine it on the canvas, and ship it under your own access rules. Start with one app, then test it with your team before rolling it out.
Start freeProfessional services
When the timeline is fixed or the process is tangled, our engineers build alongside you: scoped delivery, production-ready apps, and knowledge transfer so your team owns the result.
Talk about a projectYes, when you self-host. Run ToolJet in your VPC, on-premise or air-gapped; queries run server-side against your systems and audit logs stay with you. Review integrations, telemetry and AI settings with your privacy team, and use the Self-hosted Enterprise AI gateway add-on with a supported local model if AI requests must also stay internal.
Row-level security scopes records to the signed-in user or their group, on top of page, component and query permissions. A care manager's dashboard shows only their caseload; a coordinator sees their specialty.
ToolJet connects to your databases and to REST, gRPC and GraphQL APIs, including FHIR endpoints and integration engines, alongside 100+ native connectors. It works around the EHR for operational tooling rather than replacing clinical systems.
Use the Self-hosted Enterprise AI gateway add-on with a supported local model for internal inference, and review the data flow before using PHI. BYOK uses your provider account and does not by itself keep prompts or data inside your network.
Platform audit logs record events with actor, resource and timestamp, with configurable retention and SIEM export. Actions inside your apps, such as scheduling or outreach outcomes, are stored in your own database.
See the access model on your own data with an engineer. Bring your privacy officer.
Page updated