- State
- CA
- Covered entity type
- Healthcare Provider
- Individuals affected
- 507
- Business associate present
- No
- Type of breach
- Unauthorized Access/Disclosure
- Location of breached information
- Desktop Computer, Electronic Medical Record
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
Encompass Family and Internal Medicine Group, the covered entity (CE), reported that one of its providers impermissibly accessed and disclosed the protected health information (PHI) of 507 individuals. The PHI involved included names, gender, phone numbers, addresses, dates of birth, and other demographic information. The CE notified HHS, affected individuals, and local law enforcement. In its mitigation efforts, the CE sanctioned the responsible provider and implemented additional technical safeguards to better protect its PHI. OCR provided the CE with technical assistance regarding the Breach Notification Rule and its obligations to safeguard PHI.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.