Search Privacy Violations, Breaches and Complaints
This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.
Tennessee Valley Healthcare System
Mentioned in a privacy incident report created by the U.S. Department of Veterans Affairs on August 20, 2014. Also cited in 104 other reports.
Report ID: PSETS0000108152, U.S. Department of Veterans Affairs
Reported Entity: NASHVILLE TN - 626
Issue:
Employee A (who is an RN on 2N) submitted the following privacy concern via email: A Nurse, 2N, found copies of Employee As personal information in a time-book located at the nurses station on 2N. The Nurse, 2N, brought the information to Employee A. The information contained copies of email conversations between Employee A and her supervisor and included information regarding Employee As medical appointments. At this time, it is unclear what information was disclosed. The Privacy Officer (PO) contacted Employee A via email and asked that she provide specific details regarding the incident. PO will enter this ticket as a complaint. If the allegations are substantiated, PO will escalate to a ticket.
Outcome:
08/27/14: Employee A stated the emails contained her name, medical diagnoses, and medical appointments. The Nurse Manager had printed the emails with this information and placed them in the time book at the nurses station which was accessible to all unit staff. The Privacy Officer (PO) is escalating this to an incident. The Incident Resolution Service Team determined that Employee A will receive a HIPAA letter of notification.