John Muir Health - Walnut Creek Medical Center
ent_8ce55e8186039f6560e56f30
Disclosures
2
HHS OCR · State AG · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
821
as filed · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- John Muir Health - Walnut Creek Medical Center
- Normalized
- john muir health walnut creek medical center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- CALIFORNIAHHS OCRas victim2023-04-13
John Muir Health – Walnut Creek Medical Center (CA) reported to HHS OCR on 2023-04-13 an Unauthorized Access/Disclosure affecting 821 individuals. A workforce member posted a link to PHI on a publicly accessible website. PHI involved included names, diagnoses, and other treatment information stored on a Network Server. The CE sanctioned the workforce member, implemented additional safeguards, and retrained staff.
- 🐻California State AGas victim2023-04-13
John Muir Health - Walnut Creek Medical Center disclosed an incident where a staff member created a website linking to an Excel file containing patient health information (name, facility, room, diagnosis, dates) without proper access controls. The website was active from July 1, 2021, until it was decommissioned on March 24, 2023. The Privacy Office was notified on March 22, 2023. No financial information was involved. The organization disabled the link and decommissioned the site, and is re-educating staff and reviewing policies.