Court Rules

Privacy Enforcement Tracker

1,285 enforcement actions from 14 federal and state jurisdictions. Every event traced back to its official government source.

1,285

Total Actions

14

Jurisdictions

$35.3B+

Total Fines Tracked

Access this data programmatically:MCP Server API Docs
HHSEnforcement Action

PET Imaging of Northern Colorado

PET Imaging of Northern Colorado (Healthcare Provider, CO) reported a HIPAA breach affecting 4,824 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Lake City Cancer Care, LLC

Lake City Cancer Care, LLC (Healthcare Provider, FL) reported a HIPAA breach affecting 15,142 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

PET Imaging of Tulsa

PET Imaging of Tulsa (Healthcare Provider, OK) reported a HIPAA breach affecting 3,159 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Compumedics USA, Inc.

Compumedics USA, Inc. (Business Associate, NC) reported a HIPAA breach affecting 318,150 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

PET Imaging of The Woodlands

PET Imaging of The Woodlands (Healthcare Provider, TX) reported a HIPAA breach affecting 2,978 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Fairbanks Urology

Fairbanks Urology (Healthcare Provider, AK) reported a HIPAA breach affecting 4,289 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Southwest Urology

Southwest Urology (Healthcare Provider, OH) reported a HIPAA breach affecting 7,214 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

California Cancer Associates for Research and Excellence – San Diego

California Cancer Associates for Research and Excellence – San Diego (Healthcare Provider, CA) reported a HIPAA breach affecting 638 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Horizon Healthcare RCM

Horizon Healthcare RCM (Healthcare Clearing House, IN) reported a HIPAA breach affecting 210,901 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Jordan Drug, Inc.

Jordan Drug, Inc. (Healthcare Provider, KY) reported a HIPAA breach affecting 4,947 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Clement Manor

Clement Manor (Healthcare Provider, WI) reported a HIPAA breach affecting 16,046 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Gardner Orthopedics LLC

Gardner Orthopedics LLC (Healthcare Provider, FL) reported a HIPAA breach affecting 47,000 individuals. Breach type: Hacking/IT Incident. Location of breached information: Desktop Computer.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

McLaren Health Care

McLaren Health Care (Healthcare Provider, MI) reported a HIPAA breach affecting 743,131 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Minneapolis VA Medical Center

Minneapolis VA Medical Center (Healthcare Provider, MN) reported a HIPAA breach affecting 1,099 individuals. Breach type: Unauthorized Access/Disclosure. Location of breached information: Paper/Films.

LowData BreachHealth DataUnauthorized Data Sharing
HHSEnforcement Action

Blue Shield of California

Blue Shield of California (Business Associate, CA) reported a HIPAA breach affecting 673 individuals. Breach type: Unauthorized Access/Disclosure. Location of breached information: Email.

LowData BreachHealth DataUnauthorized Data Sharing
HHSEnforcement Action

Mainline Health Systems Inc

Mainline Health Systems Inc (Healthcare Provider, AR) reported a HIPAA breach affecting 101,104 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure
HHSEnforcement Action

Los Angeles County Developmental Services Fdn., Inc. dba Frank D. Lanterman Regional Ctr.

Los Angeles County Developmental Services Fdn., Inc. dba Frank D. Lanterman Regional Ctr. (Healthcare Provider, CA) reported a HIPAA breach affecting 19,000 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Retina Associates of Cleveland, Inc.

Retina Associates of Cleveland, Inc. (Healthcare Provider, OH) reported a HIPAA breach affecting 3,604 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Esse Health

Esse Health (Healthcare Provider, MO) reported a HIPAA breach affecting 23,671 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Harbor

Harbor (Healthcare Provider, OH) reported a HIPAA breach affecting 2,703 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Skin Care Specialty Physicians

Skin Care Specialty Physicians (Healthcare Provider, MD) reported a HIPAA breach affecting 1,038 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

TRG, LLC

TRG, LLC (Healthcare Provider, OR) reported a HIPAA breach affecting 70,434 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Iron County Medical Center

Iron County Medical Center (Healthcare Provider, MO) reported a HIPAA breach affecting 10,239 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

MediumData BreachHealth DataSecurity Failure
HHSEnforcement Action

Marquette County Medical Care Facility

Marquette County Medical Care Facility (Healthcare Provider, OH) reported a HIPAA breach affecting 1,499 individuals. Breach type: Hacking/IT Incident. Location of breached information: Email.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Broadwest Specialty Surgical Center

Broadwest Specialty Surgical Center (Healthcare Provider, IN) reported a HIPAA breach affecting 536 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

LowData BreachHealth DataSecurity Failure
HHSEnforcement Action

Winkler County Hospital District

Winkler County Hospital District (Healthcare Provider, TX) reported a HIPAA breach affecting 637 individuals. Breach type: Unauthorized Access/Disclosure. Location of breached information: Email.

LowData BreachHealth DataUnauthorized Data Sharing
FLInvestigation

Contec and Epsimed

Florida Attorney General James Uthmeier issued subpoenas to Contec, a Chinese medical device manufacturer, and Epsimed, a Miami-based reseller, over allegations that their patient monitors contain backdoors and automatically transmit patient data to China without consent. The companies are accused of violating Florida's Deceptive and Unfair Trade Practices Act by omitting material security vulnerabilities andmaking false representations about FDA approval and product quality. The AG may seek damages, civil penalties, and injunctive relief in future enforcement.

LowHealth DataUnauthorized Data SharingConsent Failure
FLEnforcement Action

Contec, Epsimed(Contec)

Florida Attorney General James Uthmeier issued subpoenas to Contec and Epsimed for selling medical devices that transmit patient data to China without adequate security. The companies are accused of violating Florida's Deceptive and Unfair Trade Practices Act by misrepresenting FDA approval and concealing cybersecurity vulnerabilities. The AG seeks damages, civil penalties, and injunctive relief to protect consumers.

HighUnauthorized Data SharingHealth DataSecurity Failure
HHSEnforcement Action

AltaMed Health Services Corporation

AltaMed Health Services Corporation (Healthcare Provider, CA) reported a HIPAA breach affecting 4,530 individuals. Breach type: Unauthorized Access/Disclosure. Location of breached information: Email.

LowData BreachHealth DataUnauthorized Data Sharing
HHSEnforcement Action

Central Kentucky Radiology

Central Kentucky Radiology (Healthcare Provider, KY) reported a HIPAA breach affecting 166,953 individuals. Breach type: Hacking/IT Incident. Location of breached information: Network Server.

HighData BreachHealth DataSecurity Failure

Explore Enforcement Data