Skip to content

Valera Health

Disclosed Feb 28, 20233 years ago2,317 affectedConfirmed

Official notice

Valera Health, the covered entity (CE), reported that it sent an encrypted data file that contained more than the minimum necessary of protected health information (PHI). This breach affected 2,317 individuals. The PHI involved included names, dates of birth, health insurance information, claims and financial information, and other treatment information. The CE reported that based on the risk assessment performed, it determined that there was a low probability of compromise of the security and privacy of the PHI. Based on OCR’s review, there is no violation of the HIPAA Privacy, Security and Breach Notification Rules.

What is known

People affected2,317 (as reported to HHS)
DisclosedFeb 28, 2023
AttackInsider
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Valera Health (Healthcare Provider, NY)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalFeb 28, 20232,317
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Valera Health

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.