FEDERALAccidentalHealthcareHealthcareDisposal ErrorBusiness Associate (HIPAA)Customer Data InvolvedHEALTH_BASICIDENTITY_BASICFINANCIAL_ACCOUNTMedium
Dental Center of the Rockies
bd_19572281803e032e · schema v1 · pii pii-v1
Full breach record for Dental Center of the Rockies →Family & Cosmetic Dentistry of the Rockies reported that on September 18, 2017, its business associate, a document shredding vendor, failed to properly secure a container of paper records, causing documents to fall out during transport. The records contained clinical, demographic, and financial information for 1,850 individuals. The covered entity suspended its agreement with the business associate and notified affected individuals.
HIPAA clock✓ HHS notified8 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,850 affectedView incident
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Nov 13, 2017
- Raw hash
- bf48f5b924dba9f104ad46c5877c85d7315e5d8bb044f3c6ce8932a6d12ff34c
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Dental Center of the Rockiesnorm: dental center of the rockies
- Domain
- dentalcenteroftherockies.com
- Industry
- Health Care Services
Victim entity
- Name
- Dental Center of the Rockiesnorm: dental center of the rockies
- Domain
- dentalcenteroftherockies.com
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Sep 18, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,850
- Data types
- HEALTH_BASICIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Misconfiguration
- Threat actor
- Partner
- Regulator citations
- OCR provided technical assistance
Compliance
- Time to disclose
- 8 weeks(56 days from discovery to filing)
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Sep 18, 2017→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.