American Health
ent_019dee52ca85457f4cf55b7f7d696a5a
Disclosures
3
Leak Site · HHS OCR · 2 jurisdictions
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
17,776
as filed · HHS OCR PR
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- American Health
- Normalized
- american health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- americanhealth.com
Disclosure history (3)newest first
- GLOBALLeak Siteas victim2026-01-05
American Health provides a comprehensive array of healthcare services including hospital operations, emergency medical services, and smart clinics. The organization is focused on delivering world-class education and training for healthcare professionals such as physicians, nurses, and EMTs through their AH Academy and specialized programs. Their intended clients encompass a wide range of healthcare needs, including home healthcare and support for special needs individuals. With a commitment to quality and patient experience, American Health aims to improve healthcare delivery across various sectors.
- PRHHS OCRas victim2014-05-18
American Health Inc. (a subsidiary of Triple-S Management Corporation, San Juan, PR) reported to HHS OCR on 2014-05-18 an Unauthorized Access/Disclosure breach affecting 11,531 individuals. Breached information was located on Paper/Films. OCR investigations revealed widespread HIPAA non-compliance: impermissible PHI disclosure to a vendor lacking a BAA, excess PHI used in mailings, and inadequate safeguards and risk analysis. Triple-S settled with OCR for $3.5 million and adopted a comprehensive corrective action plan.
- PRHHS OCRas victim2014-04-03
American Health Inc. (a subsidiary of Triple-S Management Corporation, San Juan, PR) reported to HHS OCR on 2014-04-03 a Theft breach affecting 17,776 individuals, with breached PHI located on 'Other' media. OCR investigated multiple breach notifications from Triple-S subsidiaries, finding widespread HIPAA non-compliance including impermissible PHI disclosures to a vendor without a BA agreement, excess PHI use in mailings, and inadequate ePHI risk analysis. Triple-S settled for $3.5 million and adopted a Corrective Action Plan.