Mercy Medical Center Redding
bd_efb106d22d603700 · schema v1 · pii pii-v1
Full breach record for Mercy Medical Center Redding →Mercy Medical Center Redding notified patients that an employee of its business partner, naviHealth, accessed patient medical information inappropriately between June 1 and June 13, 2016. The case manager was working under a false name and nursing license. Affected data included clinical information, SSNs, and health insurance details. naviHealth severed ties with the employee, contacted law enforcement, and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 1, 2016
Begins
Jun 6, 2016
Discovered
Jun 24, 2016
Filed
vs. sector median
10 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_80db4078409e61bb2016-06-29 · +5dVerified by operator
Filing propagation · 2 filings
View merged incident ↗Pattern: first filing Jun 24 (CA), last Jun 29 (CA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.