On June 7, 2018, the covered entity (CE), Dean Health Plan, discovered that due to a human error it sent certain reminder letters to the wrong addresses. This breach affected 1,311 individuals' protected health information (PHI) and included patients' names and their primary care facilities. Following the breach, the CE required staff to review its policy on document delivery, which ensures accuracy of information leaving its business area--including names and addresses. The CE provided breach notification to HHS, affected individuals, and the media. OCR obtained documented assurances that the CE implemented the corrective action steps listed above.