DataPath, Inc., a third-party administrative services provider for Health Savings Accounts (HSAs), discovered unauthorized access to its computer network on December 15, 2021. An investigation determined that an unauthorized party gained access to certain systems on or before that date. The incident potentially impacted the name and address of individuals whose HSA accounts were administered by DataPath. DataPath engaged third-party cybersecurity specialists, notified federal law enforcement, and is offering credit monitoring and identity restoration services through Experian to affected individuals.