Skip Navigation

Resolution Agreement

Mass General Hospital Settles Potential HIPAA Violations

On February 14, 2011, HHS entered into a Resolution Agreement with The General Hospital Corporation and Massachusetts General Physicians Organization, Inc., (Mass General) to settle potential violations of the HIPAA Privacy and Security Rules. In the agreement, Mass General agrees to pay $1,000,000 and enter into a Corrective Action Plan (CAP) to implement policies and procedures to safeguard the privacy of its patients. The incident giving rise to the agreement involved the loss of protected health information (PHI) of 192 patients of Mass General’s Infectious Disease Associates outpatient practice, including patients with HIV/AIDS.