CALIFORNIAAccidentalHealthcareHealthcareMisdeliveryCustomer Data InvolvedPHIHEALTH_BASICIDENTITY_BASICMediumResolved
L.A. Care Health Plan
bd_0d0a1a9a030c62fc · schema v1 · pii pii-v1
Full breach record for L.A. Care Health Plan →L.A. Care Health Plan reported to HHS on 2012-10-22 a breach involving an accidental mailing error affecting 18,000 individuals. Member ID cards were mailed to the wrong addresses, exposing names, dates of birth, addresses, and zip codes. Information was located on Paper/Films. The entity notified HHS, affected individuals, and the media, and revised its mailing processes.
HIPAA clock✓ HHS notified
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
⚠ No discovery dateThe OCR public portal omits the discovery date, so the 60-day notification clock cannot be evaluated from this source — only that the filing was submitted.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_c5c00e75c2c486edCalifornia State AGfiled 2012-10-22Candidate
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Oct 22, 2012
- Raw hash
- 45f6d2177c759991cf7fa8b3d03272bf2f8e739ab22041d0733539afa9d7f835
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- L.A. Care Health Plannorm: la care health plan
- Domain
- lacare.org
- Industry
- Insurance — Health
Victim entity
- Name
- L.A. Care Health Plannorm: la care health plan
- Domain
- lacare.org
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 18,000
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unknown
- Regulator citations
- Provided breach notification to HHSOCR provided technical assistance regarding a covered entity’s obligation to conduct an accurate and thorough risk analysis and implement security measures sufficient to reduce those risks and vulnerabilities identified in the analysis
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.