Open-source guardrails between AI agents and FHIR clinical data — PHI redaction, immutable audit, step-up auth, tenant isolation. MCP server + OpenAI/Gemini adapters. A healthclaw.io project.
MCP server that locally de-identifies health documents, such as prescriptions, reports, images, and PDFs, before use with Codex or Claude Code. It runs OCR and identifier detection on-device and only returns de-identified text to the agent when the automated policy check results in PASS.