DisclosureLens
AccidentalHealthcareHealthcareMisdeliveryCustomer Data InvolvedIdentity (basic)Health (basic)LowResolved

CalOptima

bd_8ddc45d3ab2ffd35 · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Oct 27, 2021

To disclose

Affected

Not disclosed

Confidence

66%
Full breach record for CalOptima3 incidents on file

CalOptima disclosed that between August 4 and August 19, 2021, COVID-19 Vaccine Health Reward Approval letters and gift cards were mailed to incorrect addresses due to a failure to match member names with addresses. The exposed information included first and last name, health plan name, and vaccination status. No SSNs or financial data were involved. CalOptima contacted recipients of erroneous letters, re-mailed correct letters, and implemented a secondary address verification step in their mailing process.

Incident timeline

Aug 4, 2021

Begins

Oct 27, 2021

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.