Golden Rule Insurance
Disclosed Dec 4, 20178 years ago9,305 affectedConfirmed
Golden Rule Insurance Company, the covered entity (CE), reported that its business associate (BA), experienced an impermissible breach of protected health information (PHI) when it left its web-based storage system unsecured. This breach incident affected 9,305 individuals. The PHI involved included names, addresses, dates of birth, Social Security numbers, financial information, and clinical information. The CE notified HHS, affected individuals, the media, and provided affected individuals with one year of credit and identity theft monitoring services. Additionally, the CE terminated its relationship with the BA. The CE provided affected individuals with a toll-free phone number for questions or concerns.
What is known
| People affected | 9,305 (as reported to HHS) |
|---|---|
| Disclosed | Dec 4, 2017 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Insurance · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Golden Rule Insurance (Health Plan, IN)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Dec 4, 2017 | 9,305 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.