MisuseData MishandlingCustomer Data InvolvedEmployee Data InvolvedPHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Family Health Centers of San Diego
bd_29e5ae363041c3fb · schema v1 · pii pii-v1
Full breach record for Family Health Centers of San Diego →Family Health Centers of San Diego reported that a physician employee sent personal health information to their personal email address. The incident window is listed as December 15, 2021, to February 27, 2026. Affected data includes names, medical record numbers, contact info, dates of birth, and medical information. The physician was terminated, access revoked, and legal action initiated. Credit monitoring is offered.
California clockConsumers notified Apr 30, 2026 → AG copy submitted May 12, 202612d ✓ CA AG copy ≤15d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_70e38f986c1fccadHHS OCRfiled 2026-05-12Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-623313
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 12, 2026
- Raw hash
- fad178a4994d10617c3b530b6836b9e78df206b8abedcda608892a92669ca7ec
Reporting entity
- Name
- Family Health Centers of San Diegonorm: family health centers of san diego
- Domain
- fhcsd.org
Victim entity
- Name
- Family Health Centers of San Diegonorm: family health centers of san diego
- Domain
- fhcsd.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Apr 30, 2026
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Insider
- Threat actor
- Internal
- Regulator citations
- Reporting the physician to the Medical Board of CaliforniaReporting the physician to the California Attorney General
- Initial access
- insider_action
Compliance
- Compliance flags
- CA AG copy ≤15d · 12d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status California Consumers notified: Apr 30, 2026→ AG copy submitted: May 12, 202612d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.