Dignity Health Medical Foundation
Disclosed Dec 19, 20178 years ago2,189 affectedConfirmed
Dignity Health Medical Foundation (DHMF), the covered entity (CE), discovered that it business associate (BA), Admail, mailed protected health information (PHI) to the wrong recipients due to a programmer’s error. This breach affected 2,189 individuals and the PHI involved included names and addresses. DHMF’s investigation revealed that Admail failed to use appropriate quality control measures and did not follow its policies and procedures. DHMF required Admail to revise its standard operating procedure to include additional measures aimed at protecting sensitive data. The employee responsible for this breach was sanctioned and retrained.
What is known
| People affected | 2,189 (as reported to HHS) |
|---|---|
| Disclosed | Dec 19, 2017 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Dignity Health Medical Foundation (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Dec 19, 2017 | 2,189 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.