AccidentalMisdeliveryCustomer Data InvolvedSupply Chain (3P Vendor)IDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASICLowResolved
Center for Autism and Related Disorders
bd_72f915970536cc50 · schema v1 · pii pii-v1
Full breach record for Center for Autism and Related Disorders →Center for Autism and Related Disorders (CARD) notified patients that a third-party billing vendor incorrectly sent invoices containing unrelated patient information due to a computer error. Affected data included patient name, internal reference number, and payment history. No SSN, address, or financial account numbers were exposed. The error was fixed, and additional controls were implemented.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_95b7acb1c394e2b7HHS OCRfiled 2023-02-04Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-562735
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 4, 2023
- Raw hash
- 3dfc3da11dc640277663ff116d502d06d476456787b40afb14d6670850cb8109
Reporting entity
- Name
- Center for Autism and Related Disordersnorm: center for autism and related disorders
Victim entity
- Name
- Center for Autism and Related Disordersnorm: center for autism and related disorders
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Feb 7, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unknown
- Third party
- via Third-party vendor responsible for generating patient invoices
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.