This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.

VA Midwest Health Care Network (VISN 23)

VISN 23 St. Cloud, MN

Mentioned in a privacy incident report created by the U.S. Department of Veterans Affairs on December 20, 2011. Also cited in 183 other reports.


Report ID: SPE000000069835, U.S. Department of Veterans Affairs

Reported Entity: VISN 23 St. Cloud, MN

Issue:

VA Employee A was on break and left items from their employee mailbox inside of a magazine in the patient waiting area. VA Employee B discovered mailbox items inside of the reading material and delivered to the Privacy Officer to report the incident. Mailbox items include: 2 days of clinic appointments with full name & full SSN, outpatient routing slip, outpatient medication listing, and a copy of non-VA prescription. Update: 12/22/11:Thirteen (13) Veterans will be sent letters offering credit protection services due to full SSN being exposed.

Outcome:

VA Employee A was found to be negligent in leaving PHI in patient waiting area within reading materials. Employee A was counseled on importance of safeguarding protected information and protected health information. Memo of events findings were sent to Employee A's direct Supervisor to be made known of this privacy/information security event. VA Employee A will complete Privacy Awareness Training to reinforce awareness and knowledge of privacy policies and practices.

Do you believe your privacy has been violated? Here’s what you can do: