OPTION CARE HEALTH, INC.
bd_c016a22c279aa011 · schema v1 · pii pii-v1
Full breach record for OPTION CARE HEALTH, INC. →3 incidents on fileOption Care Health, Inc. discovered that an employee's email account was accessed without authorization between February 6–9, 2026. The incident was identified on February 26, 2026. Potentially accessed information included names, dates of birth, medical record numbers, and treatment information. A forensic security firm was engaged to assist. The notice was filed with the California AG.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 6, 2026
Begins
Apr 6, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- HHS OCRbd_d0d124459ef097842026-04-06Candidate
- Illinois State AGbd_69249072d4bc6caf2026-04-01 · +5dCandidate
- HHS OCRbd_fc3ba04728e121ec2026-02-20 · +45dCandidate
Filing propagation · 4 filings · 2 states
View merged incident ↗Pattern: first filing Feb 20 (IL), last Apr 6 (CA) — a 45-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.