Court Rules

Privacy Enforcement Tracker

1,285 enforcement actions from 14 federal and state jurisdictions. Every event traced back to its official government source.

1,285

Total Actions

14

Jurisdictions

$35.3B+

Total Fines Tracked

Access this data programmatically:MCP Server API Docs
HHSEnforcement Action

TRG, LLC

TRG, LLC (Healthcare Provider, OR) reported a HIPAA breach affecting 70,434 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Iron County Medical Center

Iron County Medical Center (Healthcare Provider, MO) reported a HIPAA breach affecting 10,239 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Marquette County Medical Care Facility

Marquette County Medical Care Facility (Healthcare Provider, OH) reported a HIPAA breach affecting 1,499 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Broadwest Specialty Surgical Center

Broadwest Specialty Surgical Center (Healthcare Provider, IN) reported a HIPAA breach affecting 536 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
FLInvestigation

Contec and Epsimed

Florida Attorney General James Uthmeier issued subpoenas to Contec, a Chinese medical device manufacturer, and Epsimed, a Miami-based reseller, over allegations that their patient monitors contain backdoors and automatically transmit patient data to China without consent. The companies are accused of violating Florida's Deceptive and Unfair Trade Practices Act by omitting material security vulnerabilities andmaking false representations about FDA approval and product quality. The AG may seek damages, civil penalties, and injunctive relief in future enforcement.

LowHealth DataUnauthorized Data SharingConsent Failure
FLEnforcement Action

Contec, Epsimed(Contec)

Florida Attorney General James Uthmeier issued subpoenas to Contec and Epsimed for selling medical devices that transmit patient data to China without adequate security. The companies are accused of violating Florida's Deceptive and Unfair Trade Practices Act by misrepresenting FDA approval and concealing cybersecurity vulnerabilities. The AG seeks damages, civil penalties, and injunctive relief to protect consumers.

HighUnauthorized Data SharingHealth DataSecurity Failure
HHSEnforcement Action

Decisely Insurance Services, LLC

Decisely Insurance Services, LLC (Business Associate, GA) reported a HIPAA breach affecting 537,603 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server, Other.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Elmore County

Elmore County (Healthcare Provider, ID) reported a HIPAA breach affecting 931 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Central Kentucky Radiology

Central Kentucky Radiology (Healthcare Provider, KY) reported a HIPAA breach affecting 166,953 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Mount Rogers Community Services

Mount Rogers Community Services (Healthcare Provider, VA) reported a HIPAA breach affecting 38,191 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Diversified Services Enterprises

Diversified Services Enterprises (Business Associate, FL) reported a HIPAA breach affecting 501 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Imperial Beach Community Clinic

Imperial Beach Community Clinic (Healthcare Provider, CA) reported a HIPAA breach affecting 10,358 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Kelley Drye & Warren LLP

Kelley Drye & Warren LLP (Business Associate, NY) reported a HIPAA breach affecting 771 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Rural Health Services

Rural Health Services (Healthcare Provider, SC) reported a HIPAA breach affecting 36,542 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Clarkston Chiropractic Sports & Wellness

Clarkston Chiropractic Sports & Wellness (Healthcare Provider, MI) reported a HIPAA breach affecting 2,757 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Repay Management Services, LLC

Repay Management Services, LLC (Health Plan, GA) reported a HIPAA breach affecting 606 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Southern Connecticut Vascular Center, LLC

Southern Connecticut Vascular Center, LLC (Healthcare Provider, CT) reported a HIPAA breach affecting 154,417 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Sharp HealthCare

Sharp HealthCare (Healthcare Provider, CA) reported a HIPAA breach affecting 500 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

NYC Health + Hospitals

NYC Health + Hospitals (Healthcare Provider, NY) reported a HIPAA breach affecting 5,728 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Episource, LLC

Episource, LLC (Business Associate, CA) reported a HIPAA breach affecting 6,725,572 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

CriticalData BreachHealth DataSecurity Failure
HHSEnforcement Action

Huron Regional Medical Center, Inc.

Huron Regional Medical Center, Inc. (Healthcare Provider, SD) reported a HIPAA breach affecting 25,398 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Sharp Community Medical Group

Sharp Community Medical Group (Healthcare Provider, CA) reported a HIPAA breach affecting 26,976 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Sensata Technologies, Inc. Health and Welfare Benefit Plan

Sensata Technologies, Inc. Health and Welfare Benefit Plan (Health Plan, MA) reported a HIPAA breach affecting 15,630 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Cumberland County Hospital Association

Cumberland County Hospital Association (Healthcare Provider, KY) reported a HIPAA breach affecting 36,659 individuals. Breach type: Hacking/IT Incident. Location of breached information: Other.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Renkim Corporation

Renkim Corporation (Business Associate, MI) reported a HIPAA breach affecting 105,518 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Oliver Street Dermatology Management LLC

Oliver Street Dermatology Management LLC (Business Associate, TX) reported a HIPAA breach affecting 13,717 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Providia Home Care, LLC dba Preferred Care Home Health Services

Providia Home Care, LLC dba Preferred Care Home Health Services (Healthcare Provider, FL) reported a HIPAA breach affecting 38,401 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Upper Dublin Family Dentistry

Upper Dublin Family Dentistry (Healthcare Provider, PA) reported a HIPAA breach affecting 5,000 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Next Step Healthcare LLC

Next Step Healthcare LLC (Healthcare Provider, MA) reported a HIPAA breach affecting 12,090 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Horizon Blue Cross Blue Shield NJ

Horizon Blue Cross Blue Shield NJ (Health Plan, NJ) reported a HIPAA breach affecting 781 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure

Explore Enforcement Data