Did Call-on-Doc have a data breach?
Answer
Yes. Call-on-Doc reported a data breach to the Texas Attorney General on September 21, 2026.
View the official filingWhat the filing says
- Reported to
- Texas Attorney General
- Filing date
- September 21, 2026
- Breach date
- December 22, 2025
- People affected
- Not stated in the filing
Information involved
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Prescription Information
- Provider and Treatment Dates
- Billing and Financial Information
In plain terms
Telehealth provider Call-on-Doc filed a data breach report with the Texas Attorney General in 2026. The incident, dated December 22, 2025, involved the exposure of sensitive patient data, including Full Name, Social Security Number, and medical records. Individuals should review their financial and medical statements for any unusual activity.
Call-on-Doc, a telehealth platform, reported a data breach to the Texas Attorney General on September 21, 2026. The company identified the security incident on December 22, 2025, triggering a regulatory filing. The nature of the breach remains unspecified, and the incident is currently under monitoring.
The official filing confirms that the breach compromised several categories of highly sensitive personal and medical data. These exposed data types include Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, Provider and Treatment Dates, and Billing and Financial Information.
The exposure of such comprehensive data can lead to serious risks for affected individuals. Compromised medical information could be used for medical identity theft, while Social Security Numbers and financial details heighten the risk of financial fraud and identity theft. All these combined increase vulnerability to targeted phishing scams.
Individuals who may be affected by the Call-on-Doc data breach should take proactive steps. It is advisable to closely monitor all financial accounts, credit reports, and statements from health insurers for any unauthorized or suspicious activity. Consider placing a fraud alert or security freeze on your credit files with the major credit bureaus, and review Explanation of Benefits (EOB) statements from your health plan carefully.
Commonly recommended next steps
Freeze your credit
Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.
Watch your financial accounts
Review bank and card statements for unfamiliar activity and turn on transaction alerts. Report anything you don't recognize to your bank right away.
Check for medical identity theft
Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Look up another company
Other breaches reported in Texas
- Healthcare Highways, LLCYes — reportedTexas · October 6, 2026
- Capitol Pain InstituteYes — reportedTexas · October 6, 2026
- Fragomen, Del Rey, Bernsen & Loewy, LLPYes — reportedTexas · October 6, 2026
- iRhythm Technologies Inc.Yes — reportedTexas · October 6, 2026
- Harman FitnessYes — reportedTexas · October 6, 2026
- Edgewood ISDYes — reportedTexas · October 6, 2026
- Sheppard, Mullin, Richter & Hampton LLPYes — reportedTexas · October 6, 2026
- Flowco Holdings Inc.Yes — reportedTexas · October 6, 2026
- Poppins Payroll CompanyYes — reportedTexas · October 2, 2026
- The Woodlands Arts CouncilYes — reportedTexas · October 2, 2026
DataBreachSearch.com reports what was filed with state regulators. It is not legal advice, is not a law firm, and is not affiliated with any government agency or with Call-on-Doc.