AccidentalMisconfigurationCustomer Data InvolvedIDENTITY_BASICHEALTH_BASICLowResolved
Open Practice
bd_b2f9d95449270f60 · schema v1 · pii pii-v1
Full breach record for Open Practice →Open Practice Solutions, LTD notified the California Attorney General of a data error on June 26, 2025. A software update misconfiguration in their billing portal allowed another customer potential access to billing information (name, provider, date/service of service) for approximately 5 hours. No SSN, financial, or insurance data was exposed. The company corrected the misconfiguration immediately and investigated the scope. No evidence of misuse was found.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-612590
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 10, 2025
- Raw hash
- bf5fb8f967b0ebe8ea322ef2c4928b144ed2556923fe41ec4fae6989c3e1666f
Reporting entity
- Name
- Open Practicenorm: open practice
- Domain
- openpractice.net
Victim entity
- Name
- Open Practicenorm: open practice
- Domain
- openpractice.net
Incident
- Discovered
- Jun 26, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Misconfiguration
Compliance
- Time to disclose
- 15 weeks(106 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.