OpenEMR Weekly Conference Call Meeting Notes

From OpenEMR Project Wiki

These are summaries of the OpenEMR weekly community conference call. Summaries begin with the July 14, 2026 meeting.

The call is open to anyone in the community — Tuesdays at 11:00 AM Pacific Time (2:00 PM Eastern). See OpenEMR Once Weekly Conference Call Details to join.

Calls are recorded and transcribed, and AI is used to produce these summaries.

Security details are omitted. If something has been misattributed or misstated, please raise it on the forum or at the next call and this page will be corrected.

2026

September 15, 2026
  • Topics:
    • New participant Simon Quigley, and his two open pull requests
    • Module policy — what belongs in core versus Packagist
    • Bundling third-party code, and the module registry idea
    • PR 13795 (LBF statements) — decision deferred to next week
    • Doctrine, schema drift, and static analysis visibility
    • Layout-based forms and the telemetry gap
    • Release — patient search and encounter form fixes
    • Vendor upgrade experience and module event registration
    • Payment processor abstraction
  • Detailed Summary:
September 8, 2026
  • Topics:
    • Release 8.4 — branch cut and the Inferno false-pass problem
    • Meeting moved to Google Meet; dropping the release call
    • Vendor hooks for preserving customizations across container upgrades
    • AWS image strategy — retiring Standard, keeping Express and ECS
    • Front controller status and performance work going upstream
    • Deptrac and static analysis for code quality enforcement
    • Node to PHP — Schematron, CCDA, and CQM
    • AI sandboxing and containment
  • Detailed Summary:
September 1, 2026
  • Topics:
    • Moving the weekly call to the foundation's Google Workspace
    • Business development — inpatient RFI assessment and where OpenEMR fits
    • PR 13706 — code set import automation, and the move to testable services
    • ICD-10 mid-year updates
    • Security process and workload
    • Release status and the 8.3 calendar bug
  • Detailed Summary:
August 25, 2026
  • Topics:
    • Introductions — Ian McDonald and Luis M. Santos
    • HL7 V2 to FHIR pipeline work and internationalization
    • Contract opportunity and vendor collaboration
    • DICOM/PACS viewer gap and the OHIF project
    • External IDP PR and the module-first position
    • Front controller, webroot deprecation, and the demo farm
    • Test data — demo database, Synthea, and openemr-cmd
    • Proposed file integrity and backup/upgrade modules
    • SBOM tooling, the customization problem, and module discovery
    • Release cadence reconciliation deferred
  • Detailed Summary:
August 18, 2026
  • Topics:
    • backup.php — whether to restore it to core, and better alternatives
    • Telemetry, the XAMPP dead end, and the Docker migration path
    • New attendee Bobby Anchanattu — external IDP and AI integration
    • PHI, business associate agreements, and LLM vendors
    • Sinch fax module and the case for a generic document interface
    • Module system status, front controller, and demo farm blockers
    • Release and Docker items
  • Detailed Summary:
August 11, 2026
  • Topics:
    • Meeting recording and summary conventions
    • Proposed removal of backup.php and documenting proper backup practice
    • Fax/SMS module — core vs. third-party, and provider testing accounts
    • Core/module coupling tracking issues (12222, 12221, 12217)
    • FlySystem and consistent document handling
    • Module ecosystem, publishing customizations, and forum organization
    • Release branch cut and rolling integration
  • Detailed Summary:
August 4, 2026
  • Topics:
    • The public CVE disclosure and what it says about severity inflation
    • PR 13374 (OAuth client ID in the audit log)
    • ACL gaps for AI agents and system credential grants
    • The future of backup.php
    • Neil Kimber's GAI modernization experiment
    • Release call moved to next week
  • Detailed Summary:
July 28, 2026
  • Topics:
    • Release 8.3.0 and semantic versioning under ONC constraints
    • Front controller: current state, benefits, and why adoption must be universal
    • Proposed enforcement path — PHPStan rule, soft deprecation, hard failure
    • Web server configuration impact for operators
    • Multisite deprecation
    • Demo farm and Docker front controller configuration
    • Docker refactor — consolidating to a single Compose file with profiles
    • NSF I-Corps update
  • Detailed Summary:
July 28, 2026
  • Topics:
    • Release automation complete; security release strategy and disclosure timing
    • Reporter recognition and the CVE/GHSA credit question
    • Downstream update obligations and what blocks version upgrades
    • CI and test infrastructure funding for embargoed security work
    • Getting users to update: admin warnings, webinars, and culture change
    • Module architecture — async vs. sync and the plugin migration path
    • Front controller as the prerequisite for the plugin system
    • NSF I-Corps program accepted; interview window August 3–13
  • Detailed Summary:
July 14, 2026
  • Topics:
    • Presentation: SDOH referral project (Char Miller)
    • The gap for community-based organizations and closed-loop referral
    • OpenEMR Care Sphere — four-phase plan from NSF I-Corps through SBIR
    • OpenEMR architecture and schema documentation
    • Open question: SDOH as a custom module or in core
  • Detailed Summary: