Covenant Care California, LLC
bd_209ec82075d7a11b · schema v1 · pii pii-v1
Full breach record for Covenant Care California, LLC →8 incidents on fileCovenant Care California, LLC reported that an unauthorized actor accessed an employee email account between January 22 and January 29, 2019, using compromised credentials. The incident potentially exposed PHI and PII for 7,585 California residents, including names, SSNs, and medical records. The company secured the account, engaged forensic investigators, and notified affected individuals and regulators.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 22, 2019
Begins
Jan 29, 2019
Discovered
Mar 6, 2019
Filed
vs. sector median
7 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Montana State AGbd_432a7218b5988bb82019-03-06Verified
- HHS OCRbd_89188ca347156a832019-03-06Verified
- Massachusetts State AGbd_68ac9ce90188947d2019-03-20 · +14dVerified
- Illinois State AGbd_4c491142d0e368502019-01-01 · +64dCandidate
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Mar 20 (MA) — a 78-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.