Pre-Launch

2026

Vivid Vault : Designing the Group Plan & Shared Access system

A family health vault where one owner manages a household of members across three age groups, and a viewer can be invited in with exactly the amount of access they should have - nothing more.

Role

UI Design & Flow Logic

Modules Owned

Group Plan · Invite & Share Access

Platforms

Mobile App + Admin Web

Timeline

2 Weeks of Designing | Aug 2026

1.Overview

1.Overview

One family. Different ages. Different rules.

One family. Different ages. Different rules.

Vivid Vault is a family health vault - a shared space where a household keeps records, medications, appointments and documents together. Out of the full product, I owned two connected pieces: the Group Plan, which lets one owner build and manage a household inside a single plan, and Invite Viewer & Share Access, which lets any member bring in an outside caregiver and choose exactly what that person can see.

Vivid Vault is a family health vault - a shared space where a household keeps records, medications, appointments and documents together. Out of the full product, I owned two connected pieces: the Group Plan, which lets one owner build and manage a household inside a single plan, and Invite Viewer & Share Access, which lets any member bring in an outside caregiver and choose exactly what that person can see.

Age brackets designed

0–12 · 13–17 · 18+

Core flows mapped

Group Plan + Invite/Share

Surfaces covered

Owner app · Member app · Admin web

Approach

No research phase - flow reasoning in-tool

2.Context

2.Context

Same plan, three very different people inside it.

Same plan, three very different people inside it.

A "member" of a family plan is never just one thing. A parent adds a 4-year-old, a 15-year-old, and their own spouse to the same plan — and each of them needs a completely different relationship to the data, the login, and the consent required to add them.

A "member" of a family plan is never just one thing. A parent adds a 4-year-old, a 15-year-old, and their own spouse to the same plan — and each of them needs a completely different relationship to the data, the login, and the consent required to add them.

Owner

Runs the plan

Adds members, uploads consent documents, sets what each member can see or do, and watches requests move from draft → pending → active.

Member / Dependent

Lives inside the plan

Access changes automatically as they age - from a fully owner-managed profile at 6, to a self-logging-in teen at 15, to a fully independent account at 18.

Viewer / Caregiver

Sees only what's shared

An outside person - a grandparent, a co-parent, a nurse — invited in and given a hand-picked slice of health information, revocable at any time.

3.The Problem

3.The Problem

The hard part wasn't the screens. It was the rules behind them.

The hard part wasn't the screens. It was the rules behind them.

But patients shouldn't have to experience that complexity. I identified four key UX challenges:

But patients shouldn't have to experience that complexity. I identified four key UX challenges:

"How do you let one person manage an entire family's health data, in one app, without the owner accidentally seeing what a teenager wants private - or a viewer seeing what they were never given?"

"How do you let one person manage an entire family's health data, in one app, without the owner accidentally seeing what a teenager wants private - or a viewer seeing what they were never given?"

There was no research phase for this project. No interviews, no existing pattern library to borrow from - just a brief describing the real-world rules of family healthcare, and the job of turning those rules into a flow that a non-technical parent could actually use. That meant reasoning through the logic myself, directly inside Figma, before a single screen could be trusted to work.

There was no research phase for this project. No interviews, no existing pattern library to borrow from - just a brief describing the real-world rules of family healthcare, and the job of turning those rules into a flow that a non-technical parent could actually use. That meant reasoning through the logic myself, directly inside Figma, before a single screen could be trusted to work.

A 6-year-old's profile needs a birth certificate and a guardian's signature before it's active.

A 6-year-old's profile needs a birth certificate and a guardian's signature before it's active.

A 15-year-old needs lighter consent, but a mandatory email the moment they turn 13.

A 15-year-old needs lighter consent, but a mandatory email the moment they turn 13.

An 18-year-old member has to seamlessly become independent - same data, new account.

An 18-year-old member has to seamlessly become independent - same data, new account.

A viewer should never see more than what was explicitly checked off, item by item.

A viewer should never see more than what was explicitly checked off, item by item.

4.User Flows

Two systems, one shared idea: access should match the person.

Two systems, one shared idea: access should match the person.

I mapped both flows end to end before touching visual design - every branch, every consent screen, every "what if this gets rejected" moment had to be accounted for first.

I mapped both flows end to end before touching visual design - every branch, every consent screen, every "what if this gets rejected" moment had to be accounted for first.

Flow A - Building the Group Plan

Flow A - Building the Group Plan

The owner adds a member, and the flow immediately branches on age - because the law, and the trust required, are different for a toddler, a teenager, and an adult.

The owner adds a member, and the flow immediately branches on age - because the law, and the trust required, are different for a toddler, a teenager, and an adult.

01

Add Member

Owner enters a name, email and date of birth from the Group Plan screen.

02

Age is detected

The DOB silently routes the member into one of three consent paths.

03

Add as Dependent

Owner confirms the relationship and chooses to link the member as a dependent profile.

04

Submit for Review

Signed and documented, the profile is sent to the admin team for verification.

Age 0–12

ID proof + legal custody questions + guardian signature required. Profile stays in Pending until an admin verifies the documents. Rejections come with a reason and allow resubmission.

Age 13–17

Lighter acknowledgment, no custody questions. An email becomes mandatory the moment they turn 13, so they can start logging into their own account.

Age 18

Added as an independent member from day one - they get their own login and full control the moment they accept.

Edge case I designed for:

members age out. Turning 13 triggers an optional email prompt; turning 18 auto-converts a dependent into an independent account, with a "Happy Birthday" screen that hands them full ownership of their own profile - no owner action required.

Group dashboard onboarding

First-run welcome screen leading into the owner's home dashboard.

Group Plan overview

Seats used, plan renewal date, and every member's status in one place.

Per-member permission controls

Owner toggles exactly what each member can access - login, records, wearables, sensitive-data visibility - module by module.

Flow B - Inviting a Viewer & Sharing Access

Flow B - Inviting a Viewer & Sharing Access

This flow lives outside the group plan entirely. Any member can bring in an outside caregiver, and - separately - decide exactly what health information that caregiver gets to see.

This flow lives outside the group plan entirely. Any member can bring in an outside caregiver, and - separately - decide exactly what health information that caregiver gets to see.

01

Add Profile

Member chooses to invite a viewer or request to become a medical proxy for someone else.

02

Invite Viewer

Name, email, relationship, and an explicit trust confirmation before anything is sent.

03

Accept or Decline

The invitee sees the request under "Linked Profiles" and chooses to accept.

04

Share Access

The member then hand-picks exactly which records, reminders and documents the viewer can see.

The detail I cared about most:

sharing isn't all-or-nothing. Every category - reminders, medications, appointments, questionnaires, wearables, legal documents - opens into its own item-level picker. Before anything is confirmed, a warning screen calls out if the selection includes mental health, HIV/STI, genetic or child-confidentiality data, so nothing sensitive gets shared by accident.

Later refinement pass:

I revisited this flow to make the shared records feel real rather than abstract - swapping empty placeholder boxes for actual document thumbnail previews, and replacing initials with real profile photos across every screen, so the flow reads as a finished product rather than a wireframe.

Share Access with Viewer

Category-level sharing that drills into item-level selection for full control.

Select Records

Drilling into "Records" - each report is its own checkbox, with document previews and status tags like Lab Report or Extraction failed.

Manage Shared Items

Everything currently shared, grouped by category and date, editable at any time.

5.Final UI

5.Final UI

6.Final Outcome

6.Final Outcome

What the exploration produced.

What the exploration produced.

A complete age-based logic system

A complete age-based logic system

Three distinct onboarding paths (0-12, 13-17, 18+), each with the right level of consent, documentation and account behavior - with automatic transitions as members age.

A clearer path from joining Livolab to understanding what comes next.

A reusable permissions model

One toggle-based permission pattern that works for both "what can this group member do" and "what can this viewer see" - reducing design debt across the product.

A structured workflow for managing patient and clinical information.

A closed-loop review system

A closed-loop review system

Owner submission → admin verification → approve/reject/resubmit, fully connected between the mobile app and the admin web dashboard.

Owner submission → admin verification → approve/reject/resubmit, fully connected between the mobile app and the admin web dashboard.

Granular, revocable sharing

Granular, revocable sharing

Item-level access control instead of all-or-nothing sharing, with a dedicated safeguard for sensitive health categories.

A clearer path from joining Livolab to understanding what comes next.

Edge cases designed up front

Rejections with resubmission, age transitions, empty states, and independent-account conversion were all part of the core flow - not patched in later.

A structured workflow for managing patient and clinical information.

A pattern others could build on

A pattern others could build on

Consistent confirmation modals, status tags and card structures that extend cleanly to any future module needing consent or shared access.

Consistent confirmation modals, status tags and card structures that extend cleanly to any future module needing consent or shared access.

Live Product

2025

Livolab : Making preventive healthcare easier to understand and act on.

A preventive healthcare platform designed to help cancer patients in Singapore understand their health, complete recommended tests, and continue monitoring their wellbeing.

Role

User Research · UX Strategy · User Flows · Brand & UI Design · Design System

Platforms

Client Mobile, Therapist Web App Admin Governance Platform - 300+ Screens

Timeline

6 Months of Design Allignment | Jun 2025 - Nov 2025

7.My Learnings & Reflection

7.My Learnings & Reflection

What this project taught me about designing without a research phase.

What this project taught me about designing without a research phase.

Logic comes before layout

Logic comes before layout

Every flow needs an "unhappy path"

Every flow needs an "unhappy path"

Granularity is a trust signal

Granularity is a trust signal

Reusable patterns scale faster than custom screens

Reusable patterns scale faster than custom screens

Thank you for
exploring Vivid Vault.

Thank you for
exploring Vivid Vault.

Working through the Group Plan and Invite & Share Access modules pushed me to design for real family dynamics - consent, age, trust and privacy - and turn all of it into something simple enough for a parent to actually use.

Working through the Group Plan and Invite & Share Access modules pushed me to design for real family dynamics - consent, age, trust and privacy - and turn all of it into something simple enough for a parent to actually use.

Create a free website with Framer, the website builder loved by startups, designers and agencies.