Call-on-Doc Texas Data Breach: Your Information May Be Exposed
Call-on-Doc reported a data breach in Texas, exposing sensitive personal and health information of its users. If you received a notification letter, your Full Name, Date of Birth, Social Security Number, and medical details may have been compromised, creating risks for identity theft and fraud. Understanding your letter is the first step to protecting yourself and exploring your legal options.
- State
- Texas
- Breach date
- December 22, 2025
- Reported
- September 21, 2026
What may have been exposed
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Prescription Information
- Provider and Treatment Dates
- Billing and Financial Information
Call-on-Doc, a telehealth platform operating in Texas, officially reported a data security incident to the Texas Attorney General in September 2026. This breach, discovered on December 22, 2025, involved the compromise of deeply sensitive information entrusted to the company by its patients. As a digital healthcare provider, Call-on-Doc collects and stores a vast amount of personal data, making it a target for cybercriminals.
The breach notification from Call-on-Doc confirms that a range of highly personal data categories were exposed. This includes your Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, Provider and Treatment Dates, and Billing and Financial Information. The exposure of these specific data points can create significant, long-term risks for affected individuals.
The combination of personal identifiers and health-related details puts individuals at elevated risk for various forms of fraud and identity theft. For instance, compromised Diagnosis and Treatment Information, Prescription Information, or Provider and Treatment Dates can be exploited for medical fraud, leading to unauthorized care or false billing. When paired with your Full Name, Date of Birth, and Social Security Number, this information significantly increases the threat of financial identity theft, fraudulent credit applications, and sophisticated phishing attempts that leverage your medical history.
Companies like Call-on-Doc are legally bound by federal and state regulations, including the Health Insurance Portability and Accountability Act (HIPAA) and the Texas Medical Records Privacy Act, to safeguard patient data. These laws require robust security measures to prevent unauthorized access and disclosure. A data breach of this nature suggests potential shortcomings in the company's ability to maintain these critical security protocols, which may lead to legal accountability for failing to protect consumer privacy.
Receiving a data breach notification letter from Call-on-Doc serves as formal confirmation that your confidential information was compromised due to a security failure. This notification often provides the legal standing necessary to participate in a class action lawsuit. Such actions empower affected consumers to seek accountability and potential compensation for the time, stress, and ongoing risk associated with monitoring compromised accounts. If you received a letter, you are not required to show immediate financial loss to consider joining a lawsuit, and we offer a free case review with no upfront cost to you.
Received a Call-on-Doc notification letter? Our legal team tracks every Call-on-Doc data breach filing and offers a free case review. See the full Call-on-Doc case file on DataBreachClassActions
What to do if you were affected
Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.
Freeze your credit
Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.
Watch your financial accounts
Review bank and card statements for unfamiliar activity and turn on transaction alerts. Report anything you don't recognize to your bank right away.
Check for medical identity theft
Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Source: Texas Attorney General filing
Related data breach cases
- Aprio Advisory Group, LLC
- Seyfarth Shaw LLP
- Doctor's Choice Home Care
- Affordable Mortgage Advisors
- Opportune LLP
- IDScan.net
- The City of Jacksonville, TX
- Boston Capital Holdings LP
- Three Oaks Hospice, Inc.
- Three Oaks Hospice of West Houston
- Three Oaks Hospice of San Antonio
- Three Oaks Hospice of North East Texas
- Three Oaks Hospice of Fort Worth
- Mitchell County Hospital District