Capital Digestive Care, Inc.
ent_cc9239966ca9e1b7cda46512
Disclosures
4
HHS OCR · State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
17,639
nationwide · HHS OCR MD
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Capital Digestive Care, Inc.
- Normalized
- capital digestive care— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- MARYLANDHHS OCRas victim2018-04-23
Capital Digestive Care, Inc. (MD) reported to HHS on 2018-04-23 an Unauthorized Access/Disclosure affecting 17,639 individuals. On February 23, 2018, its business associate Laughlin, Marinaccio & Owens, Inc. stored data files on a commercial cloud server without adequate security. The breached information was on the 'Schedule a Visit' and 'Contact' web pages containing PHI. OCR reviewed the CE's risk assessment, policies, and safeguards. Corrective actions were implemented and assurances were obtained by OCR.
- New Hampshire State AGas victim2018-04-23
Capital Digestive Care notified the NH AG on April 23, 2018, of a data security incident discovered Feb 23, 2018. A third-party vendor stored website form data (names, DOB, contact info, limited PHI) on an insecure cloud server. 5 NH residents affected. No SSNs or financial data involved. Remediation includes enforcing HIPAA compliance for vendors.
- Montana State AGas victim2018-04-23
Capital Digestive Care notified individuals of a data security incident where a third-party vendor stored website data on an insecure cloud server. The exposed data included names, addresses, DOBs, and limited PHI from website contact forms. No EMRs or financial data were compromised. Identity restoration assistance was offered.
- Massachusetts State AGas victim2018-04-23
Capital Digestive Care reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-04-23. 26 Massachusetts residents were affected. The report records the breach type as electronic.