Open Cities Health Center
Disclosed Jun 5, 201412 years ago1,304 affectedConfirmed
The covered entity (CE), Open Cities Health Center, reported that an employee impermissibly transmitted electronic protected health information (ePHI) via the Internet to its business associate (BA). The breach affected approximately 1,304 individuals. The ePHI involved included names and dates of birth. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. In response to the breach, the CE sanctioned the responsible employee, revised its policies and procedures, and retrained its workforce members on the proper methods of transmitting ePHI. OCR provided technical assistance to the CE regarding the Breach Notification Rule and obtained assurances that the CE implemented the corrective actions noted.
What is known
| People affected | 1,304 (as reported to HHS) |
|---|---|
| Disclosed | Jun 5, 2014 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Open Cities Health Center (Healthcare Provider, MN)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jun 5, 2014 | 1,304 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.