ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

Central Valley Regional Center probes mishandling of confidential patient records

Central Valley Regional Center, a state-funded provider of services to individuals with developmental disabilities in Fresno, California, is notifying patients that physical documents containing personal information were recently mishandled by a janitorial vendor. The organization said the total number of individuals affected has not yet been determined.


According to the center, the incident came to light in July when it was discovered that a new janitorial company had been discarding documents marked for shredding along with regular trash. The files, placed in secure bins designated for confidential waste, should have been destroyed. Instead, the vendor emptied the bins into trash bags and disposed of them with other waste.


An internal investigation found that the improper disposal occurred between March and July 2025 at one Central Valley Regional Center facility. The exposed records may have included names, addresses, dates of birth, Social Security numbers, medical information, and other personal data. The matter has been reported to law enforcement, the California Attorney General, and the California State Department of Developmental Services. Officials said all vendor contracts and privacy procedures have since been reviewed.


In response, the center has tightened its safeguards to prevent similar incidents. Measures include adding locks to shredding bins, restricting access to an approved shredding provider, revising janitorial procedures, installing signage to clarify disposal requirements, and conducting routine audits to ensure compliance. The center has also reinforced confidentiality and data protection expectations with all vendors.


Affected individuals have been notified by mail and offered identity protection services. Officials stressed that while such disposal incidents are rare, they highlight the need for healthcare providers to ensure that third-party vendors understand and follow protocols for handling confidential information, including physical records containing protected health information.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543