MillsMF 🇬🇧 🪻
708 posts

MillsMF 🇬🇧 🪻
@MillsMFUK
Content Creator Sometimes. https://t.co/lmTWaf2Fdm 💚 All other links below 👇












Overnight we've received some damning claims from what appears to be a whistleblower at another clinic, entirely separately from the data leak last night. "I can show you the worst vulnerability I have ever seen, anybody can access all patient's documents. All files are open, no encryption, no password at all." [Reworded] They make claims about patient records being sent back and forth using WhatsApp to a third-party country, where all data is transferred/handled without any permission nor consent, and even that all patient consultations are recorded/archived without consent. They further detail staff members that were allegedly fired or quit, one supposedly specifically after complaining about expired ICO registration (believe this is their annual 'data protection fee'), another after learning that consultations were being recorded - they even go into details about alleged financial issues at the clinic, causing staff to go unpaid. We feel strongly we need to name the clinic above publicly, yet we're going to end up in a legal shitstorm if their claims can't later be verified - or worse, someone is deliberately attempting to mislead us. As this is the second report received on the clinic, and this one includes a ton of internal info, we're inclined to believe it's entirely true. We certainly need to report claims made to the ICO - however we need to seek some formal advice before taking any further steps on covering this publicly. If anyone has advice or guidance on how we should best handle the situation, please speak up: access@medbud.wiki




In regard to the recent conversations around patient data, transparency, and trust. Here is CB1 Medical’s response.











