generated: '2026-08-14' method: probed source: https://api.healthgorilla.com/fhir/R4/metadata description: >- Health Gorilla publishes its machine-readable API contract as an HL7 FHIR R4 CapabilityStatement served live and anonymously from its own API host. This is the authoritative description of the Health Gorilla FHIR surface — it is generated by the running server, so it is always current, and it names every supported resource, interaction, search parameter and custom operation. It is a far larger surface than the ten-resource OpenAPI held in openapi/: the live statement declares 43 resource types and 46 custom FHIR operations. spec_type: FHIR CapabilityStatement fhir_version: 4.0.1 statements: - environment: production url: https://api.healthgorilla.com/fhir/R4/metadata file: health-gorilla-r4-capabilitystatement.json http_status: 200 content_type: application/fhir+json auth_required: false publisher: Health Gorilla Inc. software: name: HAPI FHIR Server version: 7.0.0 implementation_url: https://api.healthgorilla.com/fhir/R4 resource_count: 43 operation_count: 46 fetched: '2026-08-14' - environment: sandbox url: https://sandbox.healthgorilla.com/fhir/R4/metadata file: health-gorilla-sandbox-r4-capabilitystatement.json http_status: 200 content_type: application/fhir+json auth_required: false fetched: '2026-08-14' security: service: SMART-on-FHIR smart_oauth_uris_extension: http://fhir-registry.smarthealthit.org/StructureDefinition/oauth-uris authorize: https://www.healthgorilla.com/oauth/authorize token: https://www.healthgorilla.com/oauth/token register: https://www.healthgorilla.com/oauth/register introspect: https://www.healthgorilla.com/oauth/info revoke: https://www.healthgorilla.com/oauth/cancel formats: - application/fhir+json - application/fhir+xml - json - xml system_operations: - export versions: - version: R4 path: /fhir/R4 metadata: https://api.healthgorilla.com/fhir/R4/metadata status: current - version: STU3 path: /fhir/3.0 metadata: https://api.healthgorilla.com/fhir/3.0/metadata status: legacy note: >- Documented at developer.healthgorilla.com/reference/about-stu3 and used by Patient360 record retrieval and document aggregation. An anonymous GET of /fhir/3.0/metadata returned 404 on 2026-08-14, so the STU3 CapabilityStatement was not captured — only the R4 statement is served unauthenticated. resources: - {type: AllergyIntolerance, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: Bundle, interactions: [create, read, update, search-type], search_params: 8, operations: [qhinMessageDelivery]} - {type: CarePlan, interactions: [create, read, update, delete, search-type], search_params: 6, operations: []} - {type: CodeSystem, interactions: [read], search_params: 0, operations: [lookup]} - {type: Composition, interactions: [read, search-type], search_params: 4, operations: [document]} - {type: Condition, interactions: [create, read, update, delete, search-type], search_params: 7, operations: []} - {type: Consent, interactions: [create, read, delete, search-type], search_params: 5, operations: []} - {type: Coverage, interactions: [create, read, delete, search-type], search_params: 1, operations: []} - {type: DeviceUseStatement, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: DiagnosticReport, interactions: [create, read, patch, delete, search-type], search_params: 12, operations: [pdf, hl7]} - {type: DirectMessage, interactions: [create, read, search-type], search_params: 3, operations: [searchProviders]} - {type: DocumentReference, interactions: [create, read, delete, search-type], search_params: 9, operations: [p360-search, p360-retrieve, qhin-search, hghin-search, ehex-search, cw-search, cq-search, export-ccda, ocr, pdf]} - {type: Encounter, interactions: [create, read, update, delete, search-type], search_params: 9, operations: [pdf]} - {type: FamilyMemberHistory, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: FaxMessage, interactions: [create, read, search-type], search_params: 3, operations: []} - {type: Goal, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: Group, interactions: [create, read, update, delete, search-type], search_params: 3, operations: [add-to-group, remove-from-group, members, everything]} - {type: Immunization, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: InstantMessage, interactions: [read, search-type], search_params: 3, operations: []} - {type: List, interactions: [read, search-type], search_params: 2, operations: []} - {type: Location, interactions: [create, read, search-type], search_params: 10, operations: [requisition-settings]} - {type: MedicationDispense, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: MedicationRequest, interactions: [create, read, update, delete, search-type], search_params: 6, operations: []} - {type: MedicationStatement, interactions: [create, read, update, delete, search-type], search_params: 6, operations: []} - {type: NutritionOrder, interactions: [create, read, update, delete, search-type], search_params: 5, operations: []} - {type: Observation, interactions: [create, read, update, delete, search-type], search_params: 9, operations: []} - {type: OperationDefinition, interactions: [read], search_params: 0, operations: []} - {type: Organization, interactions: [create, read, update, delete, search-type], search_params: 15, operations: [requisition-settings, remove-subtenant]} - {type: Patient, interactions: [create, read, update, search-type], search_params: 13, operations: [everything, export-ccda, merge, qhin-search, hghin-search, ehex-search, cq-search, cw-search, cw-match, cw-lookup, cw-enroll, cw-unenroll, facility-patient-cw-unenroll, enrollForUpdates, enabledForSharing, patient-enroll-import-docs, patient-enroll-retrieve-docs, patient-import-doc, retrieve-document, patient-qhin-smart-endpoints, update-external-ial2, updateExternalIdentityVerification]} - {type: Person, interactions: [read], search_params: 0, operations: []} - {type: Practitioner, interactions: [read, search-type], search_params: 11, operations: []} - {type: PractitionerRole, interactions: [create, read, update, search-type], search_params: 11, operations: [addSignature, removeSignature, signatures]} - {type: Procedure, interactions: [create, read, update, delete, search-type], search_params: 6, operations: []} - {type: Provenance, interactions: [read], search_params: 0, operations: []} - {type: Questionnaire, interactions: [read, search-type], search_params: 2, operations: [populate, procedures]} - {type: RelatedPerson, interactions: [create, read, update, delete, search-type], search_params: 1, operations: []} - {type: RequestGroup, interactions: [create, read, patch, search-type], search_params: 7, operations: [submit, pdf, label, abn]} - {type: RiskAssessment, interactions: [search-type, history-type], search_params: 2, operations: []} - {type: ServiceRequest, interactions: [create, read, search-type], search_params: 5, operations: [pdf]} - {type: StructureDefinition, interactions: [read, search-type], search_params: 0, operations: []} - {type: Subscription, interactions: [create, read, patch, delete, search-type], search_params: 2, operations: []} - {type: User, interactions: [create, read, update, search-type], search_params: 4, operations: []} - {type: ValueSet, interactions: [read], search_params: 0, operations: [search, expand]} coverage_gap: note: >- The OpenAPI documents in openapi/ describe 10 of the 43 resource types the live CapabilityStatement declares (Binary, CapabilityStatement, Coverage, DiagnosticReport, DocumentReference, Observation, Patient, Practitioner, RequestGroup, ServiceRequest). Health Gorilla publishes no OpenAPI of its own; the CapabilityStatement is its machine-readable contract, and this file records the full declared surface rather than padding the OpenAPI with operations we did not harvest. openapi_resources: 10 capabilitystatement_resources: 43 x-evidence: - {url: 'https://api.healthgorilla.com/fhir/R4/metadata', http_status: 200, content_type: application/fhir+json, fetched: '2026-08-14'} - {url: 'https://sandbox.healthgorilla.com/fhir/R4/metadata', http_status: 200, content_type: application/fhir+json, fetched: '2026-08-14'} - {url: 'https://api.healthgorilla.com/fhir/3.0/metadata', http_status: 404, fetched: '2026-08-14'}