Clustered 11 filings across 11 jurisdictions · filing window Dec 2, 2025 → Jan 7, 2026. View entity profile → Other incidents for this victim →
incident inc_99e9c0a9d00d4e33 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
CA DE IA IN MT NH OR SC
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
11 filings across 11 jurisdictions · Dec 2, 2025 – Jan 7, 2026 · 2 milestones
Jun 17, 2025
When the intrusion reportedly occurred, per the linked filings
Jul 22, 2025
Reported by DELAWARE AG, VERMONT AG, CALIFORNIA AG, NEW HAMPSHIRE AG, TEXAS AG, OREGON AG, SOUTH CAROLINA AG, WASHINGTON AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Healthcare Interactive, Inc. notified Delaware AG of a security incident occurring between July 8-12, 2025, discovered on July 22, 2025. An unauthorized actor copied files containing names and government identifiers (SSN, driver's license). No evidence of misuse was found. The company secured systems, engaged in investigation, and offered credit monitoring. The notice covers residents in multiple states including DE, MD, NY, and DC.
Healthcare Interactive Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-06-17 and was reported on 2025-12-02. 297 Indiana residents were affected. 87,565 individuals affected in total.
Affected (this filing): 87,565
Healthcare Interactive, Inc. notified consumers of a security incident where an unauthorized actor copied files from its network between July 8-12, 2025. The incident was discovered on July 22, 2025. Potentially impacted data includes names combined with government identifiers (e.g., SSN). No evidence of misuse was found. HCI offered credit monitoring and enhanced security measures.
Healthcare Interactive, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2025-12-03. The breach occurred from 07/08/2025 to 07/12/2025. 64 Montana residents were affected.
Affected (this filing): 64
Healthcare Interactive, Inc. notified the California Attorney General of a security incident where an unauthorized actor copied files from its network between July 8 and July 12, 2025. The company became aware of suspicious activity on July 22, 2025. Affected data includes names in combination with other personal information. The company secured systems, investigated the incident, and is offering credit monitoring to affected individuals.
Healthcare Interactive, Inc. (HCIactive) notified the New Hampshire Attorney General on December 3, 2025, of a data event affecting 764 NH residents. Unauthorized access occurred between July 8-12, 2025, when an actor copied files containing PII, PHI, and financial data. HCIactive discovered suspicious activity on July 22, 2025. Response included notifying law enforcement, HIPAA, and offering one year of credit monitoring.
Affected (this filing): 764
Healthcare Interactive, Inc. based in Ellicott City, Maryland, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-07-22 and reported on 2025-12-05. 32,493 Texas residents were affected. 87,565 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
Affected (this filing): 32,493
Healthcare Interactive, Inc., a healthcare sector entity reported a data breach to the Iowa Attorney General. The breach was reported on 2026-01-07.
Healthcare Interactive, Inc. notified South Carolina residents of a security incident occurring between July 8 and July 12, 2025. An unauthorized actor copied files containing names and government-issued identifiers from the company's network. The company secured systems, conducted an investigation, and is offering complimentary credit monitoring. No evidence of actual misuse was found.
Healthcare Interactive, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2026-01-07. The breach occurred during 6/17/2025 - 7/22/2025. The breach was discovered on 7/22/2025. 3,056,950 individuals were affected. Notice was sent on 12/2/2025.
Affected (this filing): 3,056,950
Healthcare Interactive, Inc., a business sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2025-07-22 and filed notice on 2026-01-07. 46,840 Washington residents were affected. 169 days elapsed between awareness and notification. 35 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 46,840