Court Rules

Privacy Enforcement Tracker

1,285 enforcement actions from 14 federal and state jurisdictions. Every event traced back to its official government source.

1,285

Total Actions

14

Jurisdictions

$35.3B+

Total Fines Tracked

Access this data programmatically:MCP Server API Docs
NJConsent Decree

Command Marketing Innovations, LLC and Strategic Content Imaging, LLC(Command Marketing Innovations and Strategic Content Imaging)

Command Marketing Innovations, LLC and Strategic Content Imaging, LLC settled allegations that they violated the New Jersey Consumer Fraud Act and HIPAA by failing to safeguard protected health information, exposing the data of 55,715 New Jersey residents. The companies agreed to pay $130,000 in penalties and implement comprehensive security measures, including appointing security officers and providing employee training.

MediumData BreachHealth DataSecurity Failure

$130K

NJSettlement

Diamond Institute for Infertility and Menopause, LLC(Diamond Institute for Infertility and Menopause)

The New Jersey Attorney General settled with Diamond Institute for Infertility and Menopause, LLC, following a data breach that exposed the electronic protected health information (ePHI) of 14,663 patients. The investigation found the clinic failed to implement required HIPAA Security Rule safeguards, including risk assessments, encryption, and access controls. The $495,000 settlement includes civil penalties and requires the clinic to implement a comprehensive information security program and corrective actions.

MediumSecurity FailureHealth Data

$495K

NJSettlement

Wakefern Food Corp., Union Lake Supermarket, LLC, ShopRite Supermarkets, Inc.(Wakefern)

Wakefern Food Corp. and associated ShopRite entities settled allegations that they improperly disposed of electronic devices containing protected health information, potentially exposing the data of over 9,700 New Jersey residents. They agreed to pay $235,000 and implement comprehensive data security measures including appointing privacy officers and providing training.

MediumHealth DataSecurity Failure

$235K

NJSettlement

EmblemHealth, Inc.(EmblemHealth)

EmblemHealth, Inc. settled with the New Jersey Attorney General over a 2016 data breach where Medicare Health Insurance Claim Numbers (containing Social Security numbers) were improperly disclosed on mailing labels to over 81,000 customers, including 6,443 in New Jersey. The company agreed to pay a $100,000 civil penalty and implement compliance reforms including ceasing use of HICNs with SSNs, enhancing employee training, and notifying the state of future breaches.

MediumData BreachHealth DataSecurity Failure

$100K

NJSettlement

ATA Consulting LLC(Best Medical Transcription)

ATA Consulting LLC, operating as Best Medical Transcription, settled for $200,000 over a 2016 server misconfiguration that publicly exposed health records of up to 1,654 patients. The settlement includes civil penalties and permanently bars the owner from operating a business in New Jersey. The breach violated HIPAA and the New Jersey Consumer Fraud Act due to inadequate security and failure to promptly notify affected individuals.

MediumHealth DataSecurity FailureBreach Notification Delay

$200K

NJSettlementMultistate

Aetna, Inc.(Aetna)

Aetna, Inc. settled with New Jersey and other states over allegations that it improperly disclosed protected health information of thousands of individuals through mailings that revealed HIV/AIDS status and AFib study participation. The settlement requires Aetna to implement policy reforms, hire an independent consultant, and pay a civil penalty of $365,211.59 to New Jersey.

MediumHealth DataData Breach

$365K

NJSettlement

Horizon Blue Cross Blue Shield of New Jersey(Horizon Blue Cross Blue Shield)

Horizon Blue Cross Blue Shield of New Jersey agreed to pay $926,803 in civil penalties and implement a corrective action plan to settle allegations that it failed to encrypt laptops containing protected health information, violating HIPAA/HITECH and the New Jersey Consumer Fraud Act.

MediumHealth DataSecurity Failure

$927K

Explore Enforcement Data