Hospice of the Chesapeake, Inc.
bd_b8a1b254148ab56d · schema v1 · pii pii-v1
Full breach record for Hospice of the Chesapeake, Inc. →An employee of Hospice of the Chesapeake, contrary to CE policy, emailed spreadsheets containing ePHI of 7,035 patients to a personal email account; a third party may have viewed them. A subsequent forensic investigation found an additional spreadsheet with PHI of 571 more patients in the employee's personal email account, bringing the total to 7,606. PHI exposed included names, addresses, conditions, and diagnoses. The CE notified affected individuals, the media, and HHS, posted substitute notice, sanctioned and terminated the employee, and provided assurances to OCR of periodic risk assessments.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Nov 12, 2013
Filed
—
No filing yet · watching
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.