- State
- FL
- Covered entity type
- Business Associate
- Individuals affected
- 2,313
- Business associate present
- Yes
- Type of breach
- Unauthorized Access/Disclosure
- Location of breached information
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
The business associate (BA), Southeastern Healthcare Solutions, reported that a programming error resulted in billing statements containing the protected health information (PHI) of 2,313 individuals being mistakenly emailed to incorrect recipients. The PHI involved names, addresses/zip codes, and other identifiers. The BA notified HHS, the media, and the affected individuals. In its mitigation efforts, the BA revised its quality control processes to prevent a reoccurrence. OCR provided technical assistance to the BA regarding the HIPAA Rules.
Change history
- 9/23/2026Added to OCR's archive list
Source: U.S. Department of Health and Human Services, Office for Civil Rights, Breach Portal. Records are reproduced as published; entity names and figures are OCR's.