CSIDB logo
Organisation

Total Vision

Profile

Primary URL
Undetermined
Location
United States of America
Sector
Healthcare
Known incidents
1 incident
Updated
2026-09-05 02:13
Aliases
1 alias

Organisation tracking is available to eligible accounts.

Profile narrative

Total Vision, also known by its alias, is headquartered in the United States of America. The organization operates in a sector that requires the collection and retention of personal health information, as evidenced by the types of data involved in its 2020 security incident. While the prompt does not enumerate its specific products or services, the nature of the compromised records indicates that Total Vision manages patient-related information for its clientele. This suggests a role within the healthcare or medical services industry, where safeguarding sensitive data is a routine operational requirement. The organization's location in the United States places it under the jurisdiction of federal and state privacy regulations that govern such information.

On October 30, 2020, Total Vision experienced a data breach that exposed a range of patient information, including birth dates, Social Security numbers, and medical details. The incident prompted a class action lawsuit alleging that the organization had failed to implement adequate cybersecurity protections to safeguard this sensitive data. In response to the litigation, Total Vision agreed to a settlement arrangement that included a monetary fund of $475,000 to compensate affected individuals. Under the terms of the settlement, claimants could receive cash payments of up to $1,000 for documented out‑of‑pocket losses resulting from the breach. The agreement also required the organization to undertake specific security improvements valued at $224,000, although it did not admit any wrongdoing as part of the resolution.

The settlement thus combined direct financial relief for victims with a commitment to strengthen Total Vision's technical and procedural defenses. By allocating $224,000 toward security enhancements, the organization pledged to upgrade its cybersecurity infrastructure following the incident. The cash payment component, capped at $1,000 per eligible claimant, aimed to address immediate financial harms such as expenses for credit monitoring or identity theft mitigation. Throughout the process, Total Vision maintained that it did not admit liability, a common stipulation in settlements of this nature. The resolution of the case reflects both the legal pressures faced by entities handling health data and the ongoing emphasis on improving protective measures after a breach.

Incidents

1 incident linked to this organisation.

CSIDB