Rectangle Health
ent_3f6e58bf739250bd3e6b30b5
Disclosures
5
State AG · 5 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
2,095
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Rectangle Health
- Normalized
- rectangle health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- 🏎️Indiana State AGas victim2025-10-08
Rectangle Health reported a data breach to the Indiana Attorney General. The breach occurred on 2025-08-12 and was reported on 2025-10-08. 77 Indiana residents were affected. 2,095 individuals affected in total.
- 🦬Montana State AGas victim2025-10-08
Rectangle Health reported a data breach to the Montana Attorney General. The breach was reported on 2025-10-08. The breach occurred on 08/14/2025. 8 Montana residents were affected.
- 🍁Vermont State AGas victim2025-10-08
Rectangle Health notified consumers of a data breach involving its Salesforce platform. Unauthorized access occurred from August 12-17, 2025, impacting names, SSNs, and dates of birth. The incident was discovered on September 5, 2025. Rectangle Health engaged in investigation and remediation, offering credit monitoring via Epiq.
- ⛰️New Hampshire State AGas victim2025-10-08
Rectangle Health notified the New Hampshire AG of a data event affecting 10 NH residents. Unauthorized access to Salesforce customer data occurred Aug 12-17, 2025. Impacted data included names, DOBs, and SSNs. Notification sent Oct 8, 2025. Credit monitoring provided.
- 🦞Maine State AGas victim2025-10-08
Rectangle Health, a commercial business, reported a data breach affecting 2,095 individuals, including 11 Maine residents. The breach occurred on August 12, 2025, and was discovered on September 5, 2025. Affected individuals were notified in writing on October 8, 2025. The company offered 12 months of credit monitoring and identity theft services through Epiq. The specific nature of the breach and the types of information compromised were not detailed in the summary.