Blue Shield of California inadvertently included provider Social Security numbers (SSNs) and personal data in public provider rosters submitted to the California Department of Managed Health Care (DMHC) between Feb-Apr 2013. The DMHC discovered the error on May 16, 2014, after producing rosters in response to ten Public Records Act requests. Blue Shield offered one year of Experian ProtectMyID. Remediation included DLP software and revised submission procedures.