GUARDANT HEALTH, INC.
ent_019e0bc6387b800487ced0a82f5677d2
Disclosures
10
State AG · HHS OCR · 6 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
9,309
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- GUARDANT HEALTH, INC.
- Normalized
- guardant health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900M8C3E5VC8BR186
- SEC EDGAR CIK
- 0001576280
- Domain
- guardanthealth.com
Disclosure history (10)newest first
- Vermont State AGas victim2024-05-03
Guardant Health, Inc. notified Vermont AG that an employee inadvertently made a file containing patient personal and medical information publicly accessible in October 2020. Unidentified third parties copied the file between September 2023 and February 2024. Data included names, ages, medical record numbers, and test results; no SSNs or financial data were involved.
- Montana State AGas victim2024-05-03
Guardant Health, Inc. notified Montana residents that a file containing patient PII and PHI (names, ages, medical record numbers, treatment info) was inadvertently made publicly accessible. The file was transferred in Oct 2020 but copied by third parties between Sept 2023 and Feb 2024. No SSNs or financial data were involved. Guardant removed the file, investigated, and enhanced controls.
- California State AGas victim2024-05-03
Guardant Health, Inc. disclosed that a file containing personal and medical information (names, ages, medical record numbers, treatment info, test results) was inadvertently made publicly accessible on an online platform due to employee error. The file was transferred in October 2020 but discovered on March 4, 2024. Unidentified third parties copied the file between September 8, 2023, and February 28, 2024. No financial information or SSNs were involved. Guardant removed the file, investigated, and enhanced technical controls.
- Illinois State AGas victim2024-05-01
GUARDANT HEALTH, INC. filed a data-breach notice with the Illinois Attorney General in May 2024 (case 24-05-011). The register records the breach as discovered on September 8, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- CALIFORNIAHHS OCRas victim2024-04-26
Guardant Health, Inc. reported to HHS on 2024-04-26 a Unauthorized Access/Disclosure affecting 9309 individuals. Breached information located on Network Server. A workforce member inadvertently made PHI (names, ages, medical record numbers, treatment info) viewable over the Internet. The entity notified HHS and individuals, sanctioned the employee, and implemented technical safeguards.
- Massachusetts State AGas victim2019-01-24
Guardant Health reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-01-24. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2018-10-25
Guardant Health, Inc. notified the NH Attorney General of unauthorized access to shared email accounts occurring between Feb 24 and Aug 14, 2018. Discovered Aug 23, 2018. One NH resident affected. Data included names, SSNs, DOBs, and bank info. Response included forensic investigation, firewall updates, password resets, and 24 months of credit monitoring.
- Massachusetts State AGas victim2018-10-25
Guardant Health, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-10-25. 5 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2018-09-16
Guardant Health, Inc. notified Montana residents that an employee email account was compromised between July 13-18, 2018. The incident involved unauthorized access to emails containing personal and health information (names, SSNs, DOB, diagnosis codes). Guardant engaged forensic investigators, improved firewalls, and provided 24 months of identity protection services.
- CALIFORNIAHHS OCRas victim2018-09-14
Guardant Health, Inc. reported to HHS on 2018-09-14 a Hacking/IT Incident affecting 1,112 individuals. Breached information located on Email. A hacker attacked the system via a phishing email, exposing demographic, clinical, and health insurance PHI. The entity notified HHS and individuals, and implemented MFA, enhanced email monitoring, and workforce training.