Florida contractor physicians’ group shares protected health information with unknown vendor without a business associate agreement
This is information about an OCR enforcement action against a covered entity that failed to meet multiple HIPAA Rules requirements, which led to patient information being exposed.
Issued by: Office for Civil Rights (OCR)
Issue Date: July 10, 1905
HHS is committed to making its websites and documents accessible to the widest possible audience, including individuals with disabilities. We are in the process of retroactively making some documents accessible. If you need assistance accessing an accessible version of this document, please reach out to the guidance@hhs.gov.
DISCLAIMER: The contents of this database lack the force and effect of law, except as authorized by law (including Medicare Advantage Rate Announcements and Advance Notices) or as specifically incorporated into a contract. The Department may not cite, use, or rely on any guidance that is not posted on the guidance repository, except to establish historical facts.