inSite Digestive Health Care
Disclosed Mar 9, 20188 years ago1,424 affectedConfirmed
On January 23, 2018, the covered entity (CE), InSite Digestive Health, discovered that an unknown individual had broken into two on-site storage lockers used to store protected health information (PHI). The CE's investigation determined that the breach affected 1,424 patients' records and included patients’ demographic and clinical information. In response to the breach, the CE enhanced the security of its storage locker. In response to OCR’s investigation, the CE notified affected individuals and prominent media outlets, and began converting its paper medical records to a digital format.
What is known
| People affected | 1,424 (as reported to HHS) |
|---|---|
| Disclosed | Mar 9, 2018 |
| Attack | Lost or stolen device |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): inSite Digestive Health Care (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Mar 9, 2018 | 1,424 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.