Skip to content

Tufts Associated Health Maintenance Organization

Disclosed Feb 16, 20188 years ago70,320 affectedConfirmed

Official notice

A business associate (BA), Clarity Software Solutions, prepared a mailing of 70,320 member identification (ID) cards for Tufts Associated Health Maintenance Organization, the covered entity (CE). The member ID number was visible through the envelope window, in addition to the member’s name and address. Following the breach, the CE and BA revised their quality control procedures. The CE provided breach notification to HHS, the affected individuals, and the media. OCR’s investigation revealed that the CE and BA had a BA agreement in place at the time of the breach. OCR reviewed the BA agreement and determined that it appeared to comply with the requirements of the HIPAA Rules. OCR opened a separate review of the BA regarding this incident.

What is known

People affected70,320 (as reported to HHS)
DisclosedFeb 16, 2018
AttackInsider
Data exposedNames, Health
SectorInsurance · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
HHS archivetotalFeb 16, 201870,320
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Tufts Associated Health Maintenance Organization

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.