The covered entity (CE), Wellstar Health System, reported that a software application used by its business associate (BA) exposed the protected health information (PHI) of 779 individuals. The PHI involved included names, dates of birth, addresses, and diagnoses. The CE notified HHS, the affected individuals, the media, and provided substitute notice. In response to the breach, the CE implemented additional administrative, technical, and security safeguards to better protect PHI.