AEGIS SCRIBE 1.2 beta
On-device SOAP / DAP / BIRP note drafting for any EHR
Free during the open beta.

OPEN BETA EXPIRY
This open beta expires on April 20, 2027. After that you can still unlock,
view and export your notes, but creating or editing notes requires the full
version. From March 21, 2027 the app shows a reminder banner (dismissible
for the day). After expiry, composing, editing, saving and sending notes are
turned off; unlocking (passphrase or recovery key), viewing and copying
saved notes, "Export all notes" (.txt / .json), "Copy all notes", deleting
notes you choose to delete, changing the passphrase and locking keep
working. The app never deletes your notes and makes no network check; it
uses this computer's clock and remembers the latest date it has seen, so
setting the clock back does not extend the beta. Expiry is at midnight
local time.

WHAT IT IS
A desktop clinical documentation aid. You paste a client statement, Aegis
drafts a note on this computer, you complete the mental status exam and
review it, then copy or send it into the EHR you already use (Epic, Cerner,
athenahealth, Kipu, SimplePractice, TherapyNotes, and others).

WHAT IT IS NOT
- Not a certified EHR, and not the legal medical record
- Does not log into any EHR, and does not use any EHR vendor's API
- Not a cloud AI: notes are drafted by rules running on this computer
- Not HIPAA certified (no software can make a clinic "HIPAA certified")

NETWORK BEHAVIOR
Aegis Scribe makes no outbound network connections. Client statements and
notes are not sent to a cloud AI or to any server. The Mac and Windows apps
load their pages from files inside the app and refuse to navigate anywhere
else. The Linux build runs a small local server (aegis_host.py) that listens
only on 127.0.0.1:8741; your browser talks only to that local server.
Two links can open your web browser, only when you click them: the
"Upgrade to the full version" link shown near and after the beta expiry,
and (Windows, only if the WebView2 runtime is missing) Microsoft's
download page.

HOW YOUR NOTES ARE PROTECTED (ENCRYPTED ON DEVICE)
- Passphrase: on first launch you choose one (at least 8 characters).
  WARNING: There is no recovery. If you forget this passphrase, your saved
  notes cannot be recovered by anyone — including us. The only exception is
  the optional recovery key (below), if you create one and keep it.
- Encryption: everything Aegis saves — saved notes, the draft kept when it
  locks, clinician details and your EHR choice — is encrypted with
  AES-256-GCM (a fresh random 12-byte IV on every save). The data key is a
  random 256-bit key, wrapped by a key derived from your passphrase with
  PBKDF2-SHA-256, 600,000 iterations, and a random 16-byte salt. Only the
  encrypted vault is written to disk.
- Where the encrypted vault is stored (as web storage, key "aegis.vault.v1"):
    Mac:     ~/Library/WebKit/com.aegisscribe.app/WebsiteData/LocalStorage/
    Windows: %LOCALAPPDATA%\AegisScribe\WebView2\ (WebView2 Local Storage)
    Linux:   your default browser's site storage for http://127.0.0.1:8741
             (use the same browser each time)
  Two non-secret settings (auto-lock minutes, clipboard seconds) and a
  failed-unlock counter are stored unencrypted next to it.
- Upgrading from 1.1: notes saved unencrypted by earlier versions are
  encrypted into the new vault when you create your passphrase, checked,
  and then the unencrypted copy is deleted. The app tells you when this
  happens.
- Unlock: a wrong passphrase shows "Wrong passphrase" and nothing else.
  After 3 wrong tries Aegis makes you wait (2 s, 4 s, 8 s … up to 60 s).
- Auto-lock: after 5 minutes without keyboard, mouse, or touch activity
  (choose 1, 5, 10, 15 or 30 minutes in Settings); when the window is
  hidden (on Linux: when you switch browser tabs or minimize the browser);
  when the computer sleeps; with Lock in the toolbar or ⌘L / Ctrl+L. The Mac
  app also locks when minimized or hidden (⌘H), when the screen locks or the
  screensaver starts, and on fast user switching. The Windows app also locks
  when minimized, when Windows suspends, and when the session is locked.
  Locking removes the key and all decrypted notes from the page; an open
  draft is saved into the encrypted vault first and restored after unlock.
- Recovery key (optional): 160 random bits shown once as 8 groups of 4
  characters. It can unlock the vault and set a new passphrase. Anyone who
  has it can open your notes. Create, replace, or remove it in Settings.
- Settings also let you change your passphrase and "Erase all data", which
  permanently deletes the encrypted vault and Aegis settings on this device.
- Export: Saved notes (and Settings) offer "Export all notes (.txt)",
  "Export all notes (.json)" and "Copy all notes". Mac and Windows open a
  Save dialog; Linux downloads the file through your browser. Exported
  files and copied text are NOT encrypted — keep them safe.
- Clipboard: when you Copy or Send, the note goes on the system clipboard.
  "Clear clipboard after copying" (Settings; default 60 seconds; Off, 15 s,
  30 s, 1, 2 or 5 min) clears it — only if it still holds the text Aegis put
  there. Mac and Windows apps: built in (also cleared when you quit, if it
  is still Aegis's text). Linux: needs xclip, xsel, or wl-clipboard. When the
  page is opened in a plain browser without the Aegis host, clearing is not
  available and the setting is disabled.
- Content-Security-Policy: the app pages allow scripts and styles only from
  the app itself and no connections except (on Linux) the local host.
- There is no audit log.

Your organization still needs its own safeguards: full-disk encryption
(FileVault / BitLocker), an OS screen lock, workforce policies and training,
and agreements with any other vendors you use. Remember that anything you
paste into the EHR, email, or other programs is outside Aegis's protection.

QUICK NOTE (MAC)
In the Mac app, choose Note → Quick Note… (⌘N), paste a quote, and pick
SOAP or DAP. Nothing installs a Desktop shortcut. The bundled optional
script quick_note.py (inside the app's Resources folder) can be run from a
terminal: it drafts a simple note, puts it on the clipboard, and writes the
quote to ~/Library/Application Support/AegisScribe/inbox.json so the app can
open it. That file is unencrypted until the Mac app next launches; the app
reads it and deletes it immediately at launch, keeps the quote in memory
only, and drafts it after you unlock.

HOW TO FILE IN AN EHR
1. Choose the destination EHR (Epic, Cerner, Zoobook, TherapyNotes,
   SimplePractice, Kipu, OpenEMR, and other SOAP / DAP / BIRP systems).
2. Compose and review the note. Save it if you want an encrypted copy here.
   Re-saving an opened note updates it; Saved → Delete removes a note.
3. Click Send to <EHR>. Switch to the chart and click the first note field
   (Subjective, Data, or the single progress-note box — not date or
   duration). Aegis pastes when it is no longer the frontmost app.
   Multi-field EHRs receive each section and Tab to the next box.
4. Use "Practice this destination" to rehearse on a local form first.
5. On a Mac, allow Aegis in System Settings → Privacy & Security →
   Accessibility the first time macOS asks.
6. The legal medical record is the note you file in the EHR, not this app.

Do not invent exam findings. The objective grid starts at "Not assessed"
because a quote is not an exam.

Provided "as is", without warranty of any kind.
