# Medplum

**Canonical:** https://apis.io/providers/medplum/  
**Website:** https://www.medplum.com  
**APIs profiled:** 4

Medplum is an Apache 2.0 open-source, FHIR-native developer platform for shipping clinical software. It bundles a FHIR R4 datastore, REST and GraphQL APIs, a TypeScript SDK, React component library, OAuth 2.0 / SMART on FHIR authentication, declarative Access Policies, Subscriptions, and TypeScript-based serverless Bots — sold as a hosted service at api.medplum.com and as a self-hostable monorepo on GitHub. Medplum is HIPAA, SOC 2 Type II, and ONC-certified.

## Kin Score — 91.4 / 100 (exemplar)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 91.4).

| Facet | Score |
|---|---|
| Discoverability | 83.3 |
| Contract Quality | 79.0 |
| Governance | 55.3 |
| Contract Governance | 55.3 |
| Operational Transparency | 97.4 |
| Developer Ergonomics | 78.0 |
| Commercial Clarity | 86.8 |
| Access Clarity | 86.8 |

Regulatory layer — **Health**: 92.5 (matched via tags).

## Agent readiness — 46.6 (agent-native)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | yes |
| Idempotency | documented |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (4)

- **Medplum GraphQL API** — FHIR-aware GraphQL endpoint at https://api.medplum.com/fhir/R4/$graphql. Supports typed nested queries, reverse-reference traversal (_reference), FHIRPath-style array filtering,...
- **Medplum Bots** — Bots are TypeScript serverless functions (AWS Lambda-style) executed in response to FHIR Subscriptions, HTTP triggers, or scheduled cron. Bots are the backbone of Medplum integr...
- **Medplum Subscriptions** — FHIR Subscription resources that match a search criteria and dispatch real-time notifications via REST hooks (webhooks) or Websockets when matching resources are created or upda...
- **Medplum Fhir API** — The Fhir API from Medplum — 4 operation(s) for fhir.

## MCP servers (1)

- **Medplum MCP Server** — Official hosted Medplum MCP server. Exposes the Medplum FHIR API to AI clients through a single general-purpose FHIR request tool plus two client-compatibility shims, authentica...

## Agentic access (1)

- **Medplum Agentic Access** — 8 operations · 4 acting

## Security (4)

- **Medplum Authentication** — http/openIdConnect/oauth2 (SMART App Launch 2.0.0, not declared in OpenAPI securitySchemes) · 4 schemes
- **Medplum Domain Security** — TLSv1.3 · HSTS · DMARC
- **Medplum Vulnerability Disclosure** — disclosure policy published
- **Medplum Trust Center** — SOC 2, HIPAA, GDPR, CSA STAR

## Plans (1)

- **Medplum Plans Pricing**

## Use cases (7)

- **Custom EHR Development** — Build custom electronic health records on top of FHIR-native storage and React UI components.
- **Patient Engagement Portals** — Ship patient-facing portals using SMART on FHIR auth and the Medplum React component library.
- **AI Scribe and Clinical Documentation** — Capture clinical notes, run them through LLM pipelines via Bots, and persist structured FHIR resources.
- **HL7v2 to FHIR Integration** — Receive legacy HL7v2 ADT, ORU, and SIU messages via the on-premise Agent and convert them to FHIR with Bots.
- **Population Health and Analytics** — Use Bulk Data 2.0 exports and GraphQL aggregations for cohort and population-level analysis.
- **Care Management Workflows** — Model longitudinal care plans, tasks, and questionnaires with FHIR-native resources.
- **Revenue Cycle Automation** — Automate claim, coverage, and explanation-of-benefit workflows with Bots and Subscriptions.

## Tags

Healthcare, FHIR, Open-Source, Developer Platform, HIPAA, SMART on FHIR, Clinical, Interoperability

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/medplum/). Scores are computed from the provider's own public artifacts under a published rubric.
