Skip to content
Back to Work
003

MedVanta Platform

Clinical Operations & Compliance Software

Role

Software Engineer

Duration

2023 – 2024

Team

Cross-functional (engineering + clinical)

Status

Shipped

Private Repo

Overview

Someone tears their ACL on a Saturday. They wait until Monday to call. The office plays phone tag for two days. They see a general practitioner who refers them to an orthopaedic specialist. Another week. I built VantaStat to collapse that timeline to minutes. A patient describes their injury, uploads photos, and the system routes them to the right specialist immediately. Behind the patient-facing app, I shipped analytics dashboards for practice managers, HIPAA-compliant backend services, and workflow automation that gave back five hours of admin time per week per practice. The entire data layer is encrypted — PHI at rest and in transit, row-level access, immutable audit logging.

VantaStat. Quick access to orthopaedic specialists for pain and injury.
VantaStat. Quick access to orthopaedic specialists for pain and injury.

Problem

Orthopaedic practices run on tools that were never designed to talk to each other. Scheduling lives in one system. Patient intake in another. Compliance documentation in a third. Staff spend hours weekly on manual data entry and phone tag between systems. The patient feels this as wait time — days between injury and specialist consultation. The practice feels it as overhead — admin work that generates no clinical value. No single platform connected the patient journey from injury report to the moment a specialist reviews their case.

Approach

  • 01Designed the patient intake flow first — in Figma, validated with clinical staff before writing code. The flow had to feel obvious to someone in pain: describe injury, upload photos, tap connect. Three steps, no account creation required
  • 02Built React dashboards surfacing the metrics practice managers actually check: workload distribution across providers, patient volume trends, and compliance KPIs. Designed for daily glance use, not deep analysis
  • 03Developed HIPAA-compliant backend services with AES-256 encryption at rest, TLS in transit, and database-level row security. Every access event logged for audit trails
  • 04Shipped workflow automation targeting the specific admin tasks consuming the most time: appointment scheduling, intake form processing, and referral routing
  • 05Integrated Twilio for SMS and voice patient communications — patients get updates without downloading an app or checking a portal
  • 06Resolved production OAuth and webhook failures that were silently dropping patient intake submissions. The system looked healthy while patients were falling through the cracks

Design Decisions

Technology Stack

Frontend

ReactTypeScriptTailwind CSS

Backend

PythonFastAPIPostgreSQL

Auth & Comms

Auth0TwilioOAuth 2.0Webhooks

Design

FigmaPrototypingUser Research

Compliance

HIPAAPHI EncryptionAudit Logging

Impact

Patient Flow

<5 min

Injury report to specialist connection — down from 2–3 days

Admin Time

~5hrs/wk

Saved per practice through workflow automation

Adoption

1 week

Full adoption by practice managers — no training sessions required

PHI Incidents

Zero

No data exposure across the entire engagement

Next Case Study

Cactus