CareLite.

Built around the digital controls SHCO expects

Unique user identity, role-based access, controlled cancellation and a complete audit trail.

CareLite is designed around the digital controls a Small Healthcare Organisation is expected to demonstrate: every user has their own identity, access is restricted by role, financial documents are cancelled rather than deleted, and an insert-only audit trail records who did what, when, and to which document.

Unique user identity

Every person who touches the system has their own login. Shared accounts are the single most common reason a hospital cannot answer an assessor's question, because a shared account makes the audit trail meaningless. Passwords are stored hashed, one-time passwords must be changed at first sign-in, and accounts lock after repeated failures.

Role-based access

Permissions are granted by role and checked on the server for every screen, not merely hidden in the interface. A blocked attempt is itself written to the audit trail, which is how a misconfigured role gets noticed. Changing a role takes effect within a minute for anyone already signed in, so revoking a right after an incident does not wait until the end of the shift.

Traceability of financial documents

Bills, receipts and refunds are never deleted. A cancellation requires a reason, records the user and the time, and the document remains on the register marked cancelled. A refund is its own document rather than an edit to the original receipt. Reprints are counted and marked DUPLICATE.

Controls on discretion

Discounts are capped per user; above the threshold an approver must be named and is recorded on the bill. Discount reasons come from a controlled list. The discount register shows every one of them with its reason and approver.

The audit trail

Insert-only, with no screen in the hospital application that can edit or remove an entry. Each row carries the user, their role, the activity, the module and screen, the document and its number, the amount, the reason, the approver, the IP address, and the value before and after the change. It is filterable and exportable, which is the form an assessor usually wants it in.

An honest note on accreditation

Software supports accreditation; it does not confer it. NABH assessment covers clinical processes, infrastructure, staffing and documentation far beyond any billing system. What CareLite provides is the digital evidence for the access control, traceability and audit elements — not a certificate.

Common questions

Does CareLite make our hospital NABH accredited?

No. Software supports accreditation but does not confer it. NABH assessment covers clinical processes, infrastructure, staffing and documentation well beyond any billing system. CareLite provides the digital evidence for the access control, traceability and audit elements.

Can a bill or receipt be deleted?

No. Financial documents are cancelled with a mandatory reason and remain on the register marked cancelled, with the user and time recorded. A refund is a separate document rather than an edit to the original receipt.

What does the audit trail record?

The user and their role, the activity, the module and screen, the document and its number, the amount, the reason, the approver, the IP address and the values before and after. It is insert-only, and no screen in the hospital application can edit or remove an entry.

How quickly does removing a permission take effect?

Within a minute for a user already signed in. Revoking a right after an incident should not wait until the end of a shift, so cached permissions are re-read periodically rather than only at sign-in.

See it on your own workflow

Tell us your bed count and we will walk your team from registration to settlement.

Request a demo See pricing