Plain-English definitions of the CQC, NHS, and primary care terms that buyers, practice managers, and digital teams use every day. Each entry is written for the question 'what does this actually mean?' rather than the regulatory definition.
CQC compliance is the ongoing process of meeting the standards set by the UK's Care Quality Commission across the five key questions: Safe, Effective, Caring, Responsive, and Well-Led. Healthcare providers in England β including GP practices, dental practices, care homes and clinics β are legally required to register with the CQC and maintain compliance through evidence, policies, audits, and inspection-ready documentation.
Read definitionThe Single Assessment Framework (SAF) is the CQC's current methodology for assessing health and adult social care services in England. It replaced the older Key Lines of Enquiry (KLOEs) in 2023 and uses Quality Statements grouped under the five key questions to measure how well a service is performing.
Read definitionA Primary Care Network (PCN) is a group of GP practices in England that work together to provide a wider range of services to a registered population, typically 30,000β50,000 patients. PCNs were introduced in 2019 as part of the NHS Long Term Plan and are funded through the Network Contract Directed Enhanced Service (DES).
Read definitionAn Integrated Care Board (ICB) is a statutory NHS organisation in England responsible for planning and commissioning health services for a defined geography. ICBs replaced Clinical Commissioning Groups (CCGs) in July 2022 under the Health and Care Act 2022 and form part of an Integrated Care System (ICS) alongside Integrated Care Partnerships (ICPs).
Read definitionThe NHS Data Security and Protection Toolkit (DSPT) is an annual self-assessment that organisations handling NHS patient data must complete to demonstrate they meet the National Data Guardian's 10 data security standards. Submission is mandatory for any organisation that uses NHS systems or data, including GP practices, hospitals, software suppliers, and care homes.
Read definitionDCB0129 and DCB0160 are the NHS clinical safety standards for health IT systems. DCB0129 applies to manufacturers of health IT software (like Medflow Dynamics), and DCB0160 applies to deployers (such as GP practices and trusts). Both require a documented Clinical Safety Case Report and Hazard Log maintained by an appointed Clinical Safety Officer.
Read definitionThe Digital Technology Assessment Criteria (DTAC) is the NHS national framework that healthcare organisations use to assess digital health products before adopting them. It covers clinical safety, data protection, technical assurance, interoperability, and usability β and has become the de facto procurement gate for any new NHS digital tool.
Read definition