Cerebral Fined $7 Million for Careless Privacy Violations

TL;DR Summary
The FTC is proposing a $7 million fine against telehealth firm Cerebral for careless handling and sharing of patients' data, as well as deceptive advertising practices. The company allegedly shared sensitive data with third parties, mailed patients postcards with diagnosis and treatment details, and had lax security practices that exposed confidential medical records. Cerebral will be required to pay partial refunds, establish a comprehensive data privacy program, and report annually on it, with a 20-year audit requirement.
- Telehealth firm Cerebral fined $7 million over “careless” privacy violations The Verge
- Cerebral to pay $7 million fine, limit health data use for ads STAT
- FTC Fines Mental Health Startup Cerebral $7 Million for Major Privacy Violations The Hacker News
- Cerebral to pay $7 million settlement in Facebook pixel data leak case BleepingComputer
- Consumer health information: Handle with (extreme) care Federal Trade Commission News
Reading Insights
Total Reads
0
Unique Readers
3
Time Saved
2 min
vs 3 min read
Condensed
82%
438 → 77 words
Want the full story? Read the original article
Read on The Verge