This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.

COMMUNITY REGIONAL MEDICAL CENTER

2823 FRESNO STREET FRESNO,CA 93715

Cited by the California Department of Public Health for a violation of California’s Health and Safety Code relating to medical privacy during an inspection that began on January 10, 2014. Also cited in 62 other reports.


Report ID: 1WS711, California Department of Public Health

Reported Entity: COMMUNITY REGIONAL MEDICAL CENTER

Issue:

Based on staff interview, clinical record, and administrative document review, the hospital failed to ensure confidential treatment of Patient 1's protected health information (PHI) when Patient 1's utilization review document was faxed to the incorrect insurance company.This failure resulted in unauthorized access to Patient 1's PHI and the potential for abuse of that information.Findings:On 1/10/14 at 10:05 a.m., during an interview, the Privacy Officer (PO) stated on 8/09/13 a hospital Case Manager entered an incorrect number on a fax machine resulting in Patient 1's utilization review document being faxed to an incorrect insurance company. Patient 1's PHI breached included name, date of birth, account number, and clinical information related to hospitalization on 8/07/13.The hospital's policy and procedure titled "HIPAA General Rules for the use and Disclosure of PHI" dated 4/08/12, indicated, "It is the policy of [hospital] to protect the privacy and security of patient information and to comply with applicable laws and regulations. This policy applies to all [hospital] workforce members, which includes employee, trainees, students, volunteers, and other designated persons."

Outcome:

Deficiency cited by the California Department of Public Health: Patients' Rights

Do you believe your privacy has been violated? Here’s what you can do: