PHREESIA, INC.
bd_d918451b34f8e35a · schema v1 · pii pii-v2
Full breach record for PHREESIA, INC. →PHREESIA, INC. filed a data-breach notice with the Illinois Attorney General in February 2026 (case 26-02-904). The register records the breach as discovered on August 25, 2025. Personal information types reported: medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 25, 2025
Discovered
Feb 1, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- California State AGbd_26337698165afc922026-02-06 · +5dCandidate
- Texas State AGbd_38249521c5279ffc2026-02-06 · +5dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Feb 1 (IL), last Feb 6 (TX) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.