2026 Entyre Care Massachusetts — accidental public repo exposure; names, ages, Medicaid IDs
Data compromised
Names, ages, Medicaid IDs (limited). No evidence of access/download found but cannot be ruled out — aggregate count unpublished
Technical writeup
Verified home-healthcare disclosure — HIPAA Journal coverage (roundup with NAS Recovery, Carle Health, Brown Health Medical Group-MA). Entyre Care Massachusetts Inc. (Boston) discovered an employee accidentally published files containing personal information in a publicly accessible online repository on March 2, 2026. Exposed files were identified and secured March 12, 2026. Investigation found no evidence the files had been accessed or downloaded, but unauthorized access during the exposure window could not be ruled out. Files contained limited information such as names, ages, and Medicaid IDs. Affected individuals were offered 24 months of complementary credit monitoring and identity-theft protection. Aggregate headcount unpublished. recordsAffected 0 pending a disclosed count.
Root cause
Employee accidentally published files containing personal information to a publicly accessible online repository (Mar 2; secured Mar 12)