DisclosureLens
AccidentalHealthcareHealthcareMisconfigurationCustomer Data InvolvedPIIPHIIdentity (basic)Government IDHealth (basic)MediumResolved

Inmediata Health Group

bd_a3280d85edb47707 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jan 1, 2019

Filed

Apr 30, 2019

To disclose

17 weeks

Affected

983state residents only

Linked

5 filings

Confidence

66%
Full breach record for Inmediata Health Group

Inmediata Health Group notified patients in January 2019 that a webpage misconfiguration allowed search engines to index an internal site, exposing patient health information and personal data. The company deactivated the site, engaged forensic investigators, and offered one year of identity monitoring. No evidence of data misuse was found.

Incident timeline

discovery → filing · 17 weeks / 119 days

Jan 1, 2019

Discovered

Apr 30, 2019

Filed

vs. sector median

+5 wks slower

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 3 states

View merged incident ↗
California State AGApr 30 · first
Montana State AGApr 30 · first · this page

Pattern: first filing Apr 30 (CA), last Dec 10 — a 2051-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.