DataBreachSearch.com

Did HealthStream, Inc. have a data breach?

Answer

Yes. HealthStream, Inc. reported a data breach to the Vermont Attorney General on September 14, 2026.

View the official filing

What the filing says

Reported to
Vermont Attorney General
Filing date
September 14, 2026
Breach date
Not stated in the filing
People affected
Not stated in the filing

Information involved

  • Full Name
  • Social Security Number
  • Date of Birth
  • Professional License and Credentialing Information
  • Employment and Personnel Records
  • Contact Information
  • Financial Account Details
  • User Authentication Credentials

In plain terms

HealthStream, Inc., a healthcare technology company, filed a data breach report with Vermont regulators on September 14, 2026. This report indicates that an unspecified security incident exposed various categories of personal and professional information. Individuals potentially affected should review their accounts and personal records.

HealthStream, Inc. officially reported a data breach to the Vermont Attorney General, with a filing date of September 14, 2026. The nature of the security incident was not specified in the public filing, but the company is currently monitoring the situation.

The reported exposed data categories include Full Name, Social Security Number, Date of Birth, Professional License and Credentialing Information, Employment and Personnel Records, Contact Information, Financial Account Details, and User Authentication Credentials. The number of individuals affected by this incident was not specified in the public filing.

To safeguard against potential misuse of exposed information, individuals are advised to remain vigilant. It is recommended to regularly review financial account statements and monitor credit reports for any suspicious activity. Free credit reports are available annually from the three major bureaus.

Consider enabling multi-factor authentication on all online accounts where available. Additionally, individuals should be cautious of unsolicited communications, such as emails, texts, or phone calls, that request personal information.

All details regarding this data breach involving HealthStream, Inc. are based on the official filing submitted to the Vermont Attorney General's office, as public record.

Commonly recommended next steps

  • Freeze your credit

    Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.

  • Watch your financial accounts

    Review bank and card statements for unfamiliar activity and turn on transaction alerts. Report anything you don't recognize to your bank right away.

  • Replace exposed ID documents

    Contact your state DMV or the issuing agency about replacing an exposed driver's license, passport, or government ID number.

  • Secure your online accounts

    Change the password on any account that reused an exposed password and turn on two-factor authentication wherever it's offered.

  • Stay alert to targeted scams

    Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.

  • Keep your notification letter

    Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.

Look up another company

Other breaches reported in Vermont

DataBreachSearch.com reports what was filed with state regulators. It is not legal advice, is not a law firm, and is not affiliated with any government agency or with HealthStream, Inc..