Inmediata Health Group
bd_a3280d85edb47707 · schema v1 · pii pii-v1
Full breach record for Inmediata Health Group →Inmediata Health Group notified patients in January 2019 that a webpage misconfiguration allowed search engines to index an internal site, exposing patient health information and personal data. The company deactivated the site, engaged forensic investigators, and offered one year of identity monitoring. No evidence of data misuse was found.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 1, 2019
Discovered
Apr 30, 2019
Filed
vs. sector median
+5 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- California State AGbd_07367e77ebb862962019-04-30Verified
- HHS OCRbd_f12cfc9ad29648572019-05-07 · +7dVerified by operator
- Oregon State AGbd_6002e6858d8b16ca2019-06-03 · +34dVerified
- HHS OCR enforcementbd_b591e1e63f897fff2024-12-10 · +2051dVerified by operator
Filing propagation · 5 filings · 3 states
View merged incident ↗Pattern: first filing Apr 30 (CA), last Dec 10 — a 2051-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.