Pivot Health
ent_9be433b8c15b856bdaab3912
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
8,391
nationwide · State AG TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Pivot Health
- Normalized
- pivot health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Texas State AGas victim2026-05-14
Pivot Health based in Miami, Florida, a insurance services entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-04-03 and reported on 2026-05-14. 1,172 Texas residents were affected. 8,391 individuals affected in total. Types of information involved: Name of individual;Financial Information (e.g. account number, credit or debit card number);Health Insurance Information. Consumers were notified via Posted at company website or special website;U.S. Mail.
- Nebraska State AGas victim2026-05-13
Pivot Health, a healthcare services provider, notified 27 Nebraska residents of a cybersecurity incident involving unauthorized access to its AWS environment between February 26 and March 13, 2026. The breach exposed names, health insurance details, and financial account information. Pivot Health engaged forensic specialists, secured systems, and provided 12 months of credit monitoring via TransUnion/Cyberscout.
- FLORIDAHHS OCRas victim2026-05-13
Pivot Health reported to HHS on 2026-05-13 a Hacking/IT Incident affecting 5864 individuals. Breached information located on Network Server. Business Associate present.
- Indiana State AGas victim2026-05-13
Pivot Health reported a data breach to the Indiana Attorney General. The breach occurred on 2026-02-26 and was reported on 2026-05-13. 92 Indiana residents were affected. 8,391 individuals affected in total.
- Illinois State AGas victim2026-05-01
PIVOT HEALTH filed a data-breach notice with the Illinois Attorney General in May 2026 (case 26-05-1194). The register records the breach as discovered on April 3, 2026. Personal information types reported: financial account number. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.