DEXCOM, INC.
ent_019e471c7661a531d3e0e01fd7f5aebe
Disclosures
6
State AG · SEC 10-K Item 1C · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
23
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- DEXCOM, INC.
- Normalized
- dexcom— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300YSK3QDSFR5EU59
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- dexcom.com
Disclosure history (6)newest first
- 🐻California State AGas victim2026-06-12
The West Series of Lockton Companies, LLC, an insurance brokerage providing employee benefit services to Dexcom, Inc., inadvertently disclosed employee personal information to three RFP participants on May 13, 2026. An Excel file sent to solicit proposals for family forming benefits contained Social Security numbers, names, dates of birth, and potentially benefits election data. Access was promptly revoked, and participants confirmed deletion or non-access. Lockton is offering two years of Experian IdentityWorks to affected employees.
- ⛰️New Hampshire State AGas victim2026-06-12
West Series of Lockton Companies, LLC reported an inadvertent disclosure of Dexcom employee personal information (names, SSNs, DOB) to RFP participants via an Excel file on April 29, 2026. Access was revoked, and 4 New Hampshire residents were notified on June 12, 2026, with credit monitoring offered. No misuse indicated.
- 🏛️Massachusetts State AGas victim2026-06-01
On April 29, 2026, The West Series of Lockton Companies, LLC, an insurance brokerage providing employee benefits to Dexcom, Inc., inadvertently disclosed an Excel file containing Dexcom employees' names, Social Security numbers, dates of birth, and potentially benefits election information to three RFP participants. Access was revoked, and participants confirmed deletion. Lockton provided affected employees with a two-year complimentary Experian IdentityWorks membership.
- 🍁Vermont State AGas victim2025-09-19
Dexcom, Inc. notified Vermont AG that a misconfiguration in its account management system inadvertently shared limited health data (glucose values, insulin doses, device type) with partners after users revoked consent. The error occurred between June 16 and August 14, 2025, and was discovered on August 25, 2025. No names were shared, only tokens. Dexcom applied a software update to revoke consent immediately.
- 🏎️Indiana State AGas victim2025-06-18
Dexcom, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-05-06 and was reported on 2025-06-18. 1 Indiana residents were affected. 23 individuals affected in total.
- FEDERALSEC 10-K Item 1Cas victim2024-02-08
Dexcom, Inc. (CIK 1595003) filed its 10-K Item 1C disclosing no material cybersecurity incidents in the last three fiscal years. The filing details robust governance, including a Board Technology Committee and a Cybersecurity and Privacy Committee. The company maintains an ISO 27001 certified ISMS, conducts annual phishing tests, and provides employee training on malware, ransomware, and social engineering. No specific breach, data exfiltration, or financial impact was reported.