DisclosureLens
FLORIDAAccidentalHealthcareHealthcareMisdeliveryCustomer Data InvolvedEmployee Data InvolvedHealth (basic)Identity (basic)Financial accountMediumResolved

mdINR LLC

bd_afc3b23c18c86a34 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Nov 3, 2014

Filed

Jan 5, 2015

To disclose

9 weeks

Affected

1,859

Confidence

95%
Full breach record for mdINR LLC

mdINR LLC (FL) reported to HHS OCR on 2015-01-05 an Unauthorized Access/Disclosure affecting 1,859 individuals. On November 3, 2014, an IT employee sent an unsecured email with an attached spreadsheet containing PHI (patient names, billing account numbers, reporting dates, internal site codes, and facility addresses) to a manufacturer representative. Breached information was located in Email. The employee received a written warning; the CE reinforced HIPAA training and role-based access controls. OCR obtained assurances of corrective action.

HIPAA clock HHS notified9 weeks discovery → filing
occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.

Incident timeline

discovery → filing · 9 weeks / 63 days

Nov 3, 2014

Begins

Nov 3, 2014

Discovered

Jan 5, 2015

Filed

vs. sector median

4 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,859 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.