AccidentalMisdeliveryCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHighContained
DentaQuest, LLC
bd_edb3d3a2b7f57025 · schema v1 · pii pii-v1
Full breach record for DentaQuest, LLC →DentaQuest, a dental benefits provider, notified the New Hampshire Attorney General of a data security incident involving 3,086 NH residents. On March 27, 2026, a CMS Prior Authorization Interoperability Report was posted to DentaQuest.com containing a second tab with member-level PII, including names and Medicaid/Medicare ID numbers. DentaQuest discovered the error on March 30, 2026, removed the report, and notified HHS. Notices were mailed to affected individuals on May 22, 2026. No evidence of misuse was found.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_b429c7c24257a350HHS OCRfiled 2026-05-22Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/dentaquest-20260522.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 22, 2026
- Raw hash
- 843b540dc17e57f97732fbeb8faf3cb1086bffe522a77ff9635a80c4bb089cad
Reporting entity
- Name
- DentaQuest, LLCnorm: dentaquest
Victim entity
- Name
- DentaQuest, LLCnorm: dentaquest
Incident
- Discovered
- Mar 30, 2026
- Materiality determined
- —
- Notification sent
- May 22, 2026
- Affected individuals
- 3,086
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1119 Automated Collection
- Regulator citations
- Notified the United States Department of Health and Human Services
Compliance
- Time to disclose
- 8 weeks(53 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.