Skip to main content
info@healthfocus.co.za +27 87 750-8157

Combating the “Bogus Doctor” Crisis: The Role of Credentialing and Software Security

South Africa’s healthcare system is grappling with a troubling trend: an increase in unregistered practitioners and fraudulent “bogus doctors” operating without proper qualifications or regulatory oversight. Recent investigations show hundreds of unregistered individuals have been identified, and many arrested, for practising medicine without registration — sometimes even using the credentials or practice numbers of real professionals. This not only violates law but presents a direct risk to patient safety, practice reputation and the integrity of the medical profession.

As a healthcare provider, your ethical and legal duty is to ensure that only properly registered and qualified practitioners can access clinical systems, generate clinical notes, prescribe treatment, or issue scripts. To protect your patients and your practice, software security and credentialing must be more than an afterthought; they must be a fundamental line of defence.

Understanding the “Bogus Doctor” Problem in South Africa

The term “bogus doctor” refers to individuals practising medicine despite lacking proper registration with the Health Professions Council of South Africa (HPCSA) — the statutory body responsible for regulating health professions. These impostors may present forged qualifications, use stolen practice numbers, or even collude with legitimate practitioners to gain access to patients and billing systems. Patients treated by unregistered practitioners face serious risks, including misdiagnosis, incorrect treatment or even serious harm, because these individuals lack formal training and accountability mechanisms.

Such fraud also affects practices financially. Fraudulent claims can compromise medical aid billing systems and potentially expose legitimate practitioners to audits, penalties, and reputational damage.

The Importance of Credentialing and Access Controls

Software used in modern healthcare practices — such as electronic health records (EHRs), practice management systems and billing platforms — must act as a trusted gatekeeper, only granting access and privileges to authenticated, credentialed users. Robust credentialing and access control features help ensure that:

  • Only HPCSA‑registered practitioners can log into clinical systems.
  • Users can only create or modify patient records, clinical notes or prescriptions when authorised.
  • Practice numbers linked to billing and claims are valid and tied to registered practitioners.
  • Suspended or unregistered users are prevented from accessing sensitive clinical functions.

Without these safeguards, practices can inadvertently allow unregistered staff to issue scripts, record clinical data, or submit claims — actions that can be legally and ethically compromising.

Security Within Practice Management Software

Eminance, the practice management platform from Health Focus, is designed with strong front‑end and back‑end security capabilities that help practices maintain responsible user access and protect clinical integrity. This includes features such as role‑based permissions, where administrators can define exactly what each user can see or do within the system — ensuring that clinical and billing tools are accessible only to appropriately qualified staff.

This approach is crucial, especially in a digital ecosystem where credentials and access can be manipulated if not properly controlled. By enforcing strict user roles and requiring secure logins for clinical actions, the software helps reduce the risk of misuse of practice numbers or fraudulent access — a vital safeguard in the fight against bogus practitioners.

Why Practice Owners Must Prioritise System Security

Protecting your practice from fraudulent activity isn’t just about technology — it’s about professional responsibility. Practice owners are ethically and legally accountable for who operates within their systems and how clinical data is captured and recorded. A lack of appropriate software security measures can expose your practice to:

  • Legal liability if unregistered practitioners treat patients or enter clinical data.
  • Loss of medical aid reimbursements if claims are linked to unverified providers.
  • Reputational damage that can harm patient trust and long‑term practice viability.

By investing in software that enforces secure credentialing and protects access to clinical functions, practices can uphold patient safety, comply with regulations, and preserve the integrity of South African healthcare.

Partnering for Compliance and Security

At Health Focus, we understand that clinical systems must do more than organise data — they must secure it. Eminance integrates secure user access controls and credentialing support, enabling practices to uphold the highest standards of clinical governance and protect themselves from the growing threat of unregistered or fraudulent practitioners.

In a time when compliance and cybersecurity are paramount, choosing the right software isn’t just about efficiency — it’s about safeguarding the future of your practice and safeguarding the trust placed in you by your patients.