REVSPRING, INC.
ent_019e0d1f19a92c89544402e18544c29d
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,000
as filed · HHS OCR MI
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- REVSPRING, INC.
- Normalized
- revspring— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- XX9565OVKA4TOKTD1R27
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- 🦞Maine State AGas victim2023-12-28
An internal error at RevSpring, Inc. resulted in mismatched patient statements being viewable by a limited set of other patients. This incident occurred between October 24, 2023, and October 26, 2023, and was discovered on the same day it ended. The breach impacted 3 Maine residents. In response, the company offered 12 months of complimentary credit monitoring services to those affected.
- TNHHS OCRas victim2023-12-22
RevSpring, Inc. reported to HHS on 2023-12-22 a Unauthorized Access/Disclosure affecting 1,053 individuals. Breached information located on Network Server. A software coding error allowed PHI (names, addresses, diagnoses, treatment info) to be viewable by others. The BA implemented additional safeguards and retrained workforce.
- MIHHS OCRas victim2014-01-06
RevSpring, Inc. (a business associate) reported to HHS OCR on 2014-01-06 a breach of type 'Other' affecting approximately 3,000 individuals. A printing error caused patients to receive billing statements containing other patients' PHI. Breached information located on Paper/Films. PHI exposed included names, account numbers, balances owed, procedure codes, procedure descriptions, providers' names, and dates of services. The CE obtained assurances from RevSpring that additional safeguards would be implemented; OCR reviewed the CE's policies and procedures.