Limeade, Inc.
ent_83de0522ae4f485789249737
Disclosures
2
HHS OCR · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
2,287
as filed · HHS OCR WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Limeade, Inc.
- Normalized
- limeade— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- limeade.com
Disclosure history (2)newest first
- WASHINGTONHHS OCRas victim2021-10-15
Limeade, Inc. (a Business Associate based in WA) reported to HHS on 2021-10-15 an Unauthorized Access/Disclosure affecting 2,287 individuals. A software bug in Limeade's web platforms and applications intermittently allowed trackable activities to be viewable by other users, exposing PHI including names and wellness activities stored on Desktop Computer and Other Portable Electronic Device. The BA notified HHS and affected individuals, trained its engineering team, and implemented additional technical safeguards. OCR provided technical assistance.
- FEDERALHHS OCRas victim2021-01-20
Limeade, Inc. reported to HHS on 2021-01-20 a Hacking/IT Incident affecting 668 individuals, resulting from a malware attack. The breach occurred on a network server and compromised protected health information (PHI) including names, email addresses, access credentials, and dates of birth. In response, the company offered complimentary credit monitoring and implemented enhanced security measures. OCR provided technical assistance.