Search Privacy Violations, Breaches and Complaints
This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.
RIVERSIDE COMMUNITY HOSPITAL
Cited by the California Department of Public Health for a violation of California’s Health and Safety Code relating to medical privacy during an inspection that began on July 11, 2013. Also cited in 64 other reports.
Report ID: PURM11, California Department of Public Health
Reported Entity: RIVERSIDE COMMUNITY HOSPITAL
Issue:
Based on interview and record review, the facility failed to ensure the PHI (protected health information) of Patient A remained confidential. This failure resulted in the breach (disclosure) of Patient A's PHI to an individual in the community not authorized to receive the information.Findings:An interview was conducted with the facility's Privacy Officer (PO) on July 11, 2013, at 1:30 p.m. The PO stated a subcontractor of the facility faxed clinical and demographic information to an individual in the community.The PHI of Patient A which was disclosed included Patient A's name, date of birth, address, insurance information, chief complaint, medical record and account numbers, date of visit, history and physical, and laboratory resultsA review of the facility policy, "Safeguarding Protected Health Information (Effective Date: November 1, 2011)," was conducted. The policy indicated, "The facility must take reasonable steps to safeguard and protect PHI. The facility must identify and utilize appropriate administrative, physical, and technical safeguards in order to protect PHI from inappropriate and/or unauthorized access, use, and/or disclosures."
Outcome:
Deficiency cited by the California Department of Public Health: Health & Safety Code 1280