← Back to all docs

Healthie API

Healthie is a HIPAA-compliant, cloud-based EHR and practice-management platform powering EHR, scheduling, billing, telehealth, and patient engagement for private practices, group clinics, digital health startups, and enterprises. An unofficial API lets you programmatically pull patients, appointments, charting, care plans, forms, and billing data—and push updates like new appointments, intake submissions, and claims back into Healthie.

By Alex KlarfeldMay 30, 2026
Healthie API

What is Healthie?

Healthie is a HIPAA-compliant, cloud-based Electronic Health Record (EHR) and practice-management platform for healthcare and wellness providers. Practices use Healthie to run intake and onboarding, charting, care plans, and clinical tools; manage scheduling, billing, insurance, and reporting; and engage patients through telehealth, messaging, programs, and a patient portal. The platform serves private practices, group practices and clinics, digital health startups, and enterprise organizations across behavioral health, family care, women's health, nutrition, health coaching, and chronic care.

Core product areas include:

  • Cloud-Based EHR (Intake & Onboarding, Charting, Care Plans, Clinical Tools, Multi-Provider Support, AI Scribe)
  • Practice Management (Scheduling, Billing, Insurance, Reporting & Analytics, Workflow Automations)
  • Patient Engagement (Telehealth & Webinars, Messaging, Programs, Journaling, Patient Portal)
  • Healthie+ (modular API & SDKs, App Marketplace integrations including Google Fit, Apple Health, and Fitbit)

Common data entities:

  • Patients/Clients, Providers, Organizations, Permissions
  • Appointments, Availability, Appointment Types, Telehealth Sessions
  • Charting Notes, Care Plans, Clinical Documents, Goals
  • Forms, Form Answer Groups, Intake Submissions, Programs
  • Billing Items, Insurance Claims, Payments, CMS-1500 Records
  • Conversations, Messages, Notifications, Webhook Events

The Healthie Integration Challenge

Practices run mission-critical clinical and billing workflows on Healthie daily, but turning its GraphQL surface into reliable, production-grade automation is non-trivial:

  • Closed, application-gated API: Healthie's API is closed—you generate API keys per organization and Sandbox access must be requested from the vendor, gating headless automation behind approvals
  • GraphQL complexity scoring: A single request is capped at a complexity score of 2000, so naive deep queries fail and bulk fan-out without backoff hits dynamic, partly undocumented throttling
  • Authentication pitfalls: The API expects a Bearer-style API key in the Authorization header; clients defaulting to a Basic header fail silently with no clear error
  • HIPAA and SOC 2 constraints: Patient data requires careful scoping, audit logging, and PHI handling that generic integrations rarely get right
  • Weekly schema evolution: Healthie ships frequent schema changelogs, so integrations must track field and type changes to avoid silent breakage
  • Webhook configuration spread: Events like appointment.created, client.updated, and form_answer_group.created are configured in the dashboard and need reliable delivery and replay handling

How Supergood Creates Healthie APIs

Supergood reverse-engineers authenticated flows and Healthie's GraphQL surface to deliver a resilient, normalized API layer for your Healthie organization—handling auth, complexity limits, and schema drift so you integrate once.

  • Manages API key authentication and session handling securely, avoiding silent Bearer/Basic header failures
  • Decomposes deep queries to stay under the 2000 complexity cap and applies adaptive backoff against dynamic rate limits
  • Normalizes responses across patients, appointments, charting, forms, and billing so you integrate once and rely on consistent objects
  • Tracks Healthie's weekly schema changelogs and webhook events to keep your integration current as the platform evolves

Use Healthie with AI agents: Healthie MCP Server →

Getting Started

  1. Schedule Integration Assessment

Book a 30-minute session to confirm your Healthie modules, data entities, and authentication model.

  1. Supergood Generates and Validates Your API

We deliver a production-ready Healthie adapter tailored to your organization's configuration and permissions.

  1. Deploy with Monitoring

Go live with continuous monitoring and automatic adjustments as Healthie's schema evolves.

healthie

API Endpoints

Authentication

POST/authenticate

Authenticate to a Healthie organization with an API key and obtain a scoped session for downstream calls.

Patient Operations

GET/patients

List patients/clients with filters for provider, status, group, and last activity.

Scheduling

GET/appointments

Retrieve appointments, availability, and telehealth sessions with date-range and provider filters.

Scheduling

POST/create_appointment

Book a new appointment against a provider's availability and appointment type.

Clinical

GET/encounters

Pull charting notes, care plans, and clinical documents associated with a patient encounter.

Forms

POST/submit_form

Submit an intake form answer group or update a form submission for a client.

Billing

GET/billing

Pull billing items, insurance claims, payments, and CMS-1500 records across the practice.

Use Cases

Sync patient and appointment data into your warehouse

- Pull patients, providers, and organization records into a unified warehouse - Stream appointment and telehealth events to downstream analytics and reminder tools - Reconcile client records across multiple providers for a single patient 360

Automate intake and charting workflows

- Submit intake form answer groups and pull completed charting notes back for review - Trigger care-plan creation when a new client completes onboarding - Route form completions and clinical documents to downstream EHR and CRM systems

Reconcile billing and insurance claims

- Sync billing items, payments, and CMS-1500 claims into accounting and AR systems - Match insurance claim status against patient billing records - Surface unpaid balances and denied claims to retention and revenue-cycle workflows

Power patient engagement and messaging

- Pull conversations, messages, and program enrollments into engagement tooling - Trigger outreach when appointment.created or client.updated webhook events fire - Keep journaling and program progress in sync with coaching dashboards

Technical Specifications

Authentication

API key (Bearer token in the Authorization header) handled in a managed session, avoiding silent Basic-header failures

Connectivity

Healthie's GraphQL API surfaced through a normalized adapter, with Sandbox and Production environments supported

Response format

Normalized JSON across patients, appointments, charting, forms, and billing objects

Rate limits

Adaptive throttling that respects Healthie's GraphQL complexity cap (max 2000 per request) and dynamic per-tenant limits

Session management

Automatic key handling, request decomposition, and credential rotation

Data freshness

Near real-time pulls for patients, appointments, and billing with optional scheduled batch syncs

Security

Encrypted credential vault, scoped access tokens, HIPAA- and SOC 2-aligned controls, and PHI audit logging

Webhooks

Event callbacks for appointment.created, appointment.updated, client.created/updated, and form_answer_group.created

Latency

Sub-second reads on cached entities; multi-second writes when posting through charting and billing workflows

Throughput

Horizontally scaled workers sized to multi-provider practice and digital-health volume

Reliability

Retry, backoff, and idempotency keys for appointment booking, form submission, and billing transactions

Adaptation

Continuous monitoring of Healthie's weekly schema changelogs and webhook changes to absorb drift

Frequently asked questions

Yes. Supergood works with your existing Healthie organization and API keys. We handle authentication and request scoping so you don't have to build against the raw GraphQL surface yourself, and we can operate against both Sandbox and Production environments.

Healthie caps each request at a complexity score of 2000 and applies dynamic, partly undocumented throttling. Supergood decomposes deep queries to stay under the cap and applies adaptive backoff, so bulk operations don't fail silently or get throttled without recovery.

Yes. Healthie is HIPAA- and SOC 2-compliant, and Supergood mirrors those controls with encrypted credential storage, scoped tokens, PHI-aware audit logging, and least-privilege access aligned to your organization's permissions.

Healthie publishes weekly schema changelogs. Supergood continuously monitors those changes and the platform's webhook events, adjusting the normalized adapter so your integration keeps working as fields and types evolve.

Patients, appointments, charting and care plans, forms and intake submissions, billing and insurance claims, and messaging are all exposed through one normalized API surface, with both read and write operations where Healthie permits them.

Ready to get a real API?