Nova Recovery Center
ent_a174c90fee2352a0c9ea6cc7
Disclosures
4
State AG · HHS OCR · 3 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
7,713
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Nova Recovery Center
- Normalized
- nova recovery center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- ⭐Texas State AGas victim2025-08-07
Nova Recovery LLC d/b/a Nova Recovery Center based in Wimberley, Texas, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-05-25 and reported on 2025-08-07. 5,518 Texas residents were affected. 7,712 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via Notice by publication in print media;Posted at company website or special website;U.S. Mail.
- 🦞Maine State AGas victim2025-08-05
Nova Recovery Center experienced an external system breach on March 31, 2025, which was discovered on May 25, 2025. The breach affected 7,713 individuals, including 3 Maine residents. Notification to affected consumers was sent on August 1, 2025, and the company offered 24 months of identity theft protection services through Kroll.
- 🏎️Indiana State AGas victim2025-08-01
Nova Recovery LLC dba Nova Recovery Center reported a data breach to the Indiana Attorney General. The breach occurred on 2025-03-31 and was reported on 2025-08-01. 14 Indiana residents were affected. 7,713 individuals affected in total.
- TEXASHHS OCRas victim2025-07-24
Nova Recovery Center, LLC d/b/a Nova Recovery Center (TX) reported to HHS OCR on 2025-07-24 a Hacking/IT Incident affecting 6,242 individuals. Breached information was located on a Network Server. No business associate was identified as present. No further details were available in the HHS web description.