The 1000Shaffer, Geraldine v. InHome Selective Care LLC11 Data Breach: Incident Facts and Free Case Review
InHome Selective Care LLC operates within the specialized home healthcare and caregiving services sector, delivering vital medical support, nursing care, and daily living assistance directly to patients' residences. Because the organization coordinates comprehensive in-home medical treatments and personal care services, it routinely collects, processes, and stores an extensive volume of highly sensitive personal and protected health information. This trove of data is indispensable for patient intake, care coordination, insurance billing, and staffing operations, making the enterprise a repository for deeply personal and vulnerable records.
Received a 1000Shaffer, Geraldine v. InHome Selective Care LLC11 notification letter? Find out in minutes if you qualify for compensation.
Free case review- State
- Indiana
- Breach date
- October 9, 2025
- Reported
- November 19, 2025
What may have been exposed
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Home Address
- Phone Number
In 2025, InHome Selective Care LLC reported a formal data security incident to the Indiana Attorney General. While the full mechanics of the intrusion continue to be investigated, breaches impacting home healthcare providers typically involve unauthorized access to internal administrative networks, compromised database servers, or vulnerabilities within third-party vendor platforms used for scheduling and electronic health record management. Such incidents often stem from inadequate network segmentation, unpatched software vulnerabilities, or sophisticated cyber-threat methodologies designed to bypass legacy perimeter defenses.
The exposure resulting from this security failure implicates a dangerous array of sensitive information, including full names, dates of birth, Social Security numbers, health insurance details, and detailed medical diagnosis and treatment histories. The compromise of protected health information and financial identifiers in the healthcare sector creates severe, immediate risks for victims. Unlike transient data breaches, leaked medical records and Social Security numbers cannot be easily reset or replaced, exposing individuals to prolonged threats of targeted medical fraud, fraudulent insurance claims, tax identity theft, and unauthorized financial account takeover that can destabilize a victim's financial and personal well-being for years.
Under federal and state regulatory frameworks, including the Health Insurance Portability and Accountability Act (HIPAA) and Indiana state data protection statutes, InHome Selective Care LLC had a stringent legal obligation to implement and maintain robust administrative, physical, and technical safeguards to protect confidential patient and employee records. The occurrence of a data breach of this magnitude serves as prima facie evidence of a potential failure in fulfilling these mandatory security duties. Organizations entrusted with sensitive health data are required to encrypt stored files, enforce multi-factor authentication, monitor network traffic for anomalous behavior, and continuously audit third-party security postures to prevent unauthorized exfiltration.
Receiving a formal data breach notification letter from InHome Selective Care LLC is a serious legal development, serving as an admission by the company that your confidential information was compromised due to inadequate security measures. Under the law, this notification establishes the legal standing necessary to participate in a class action lawsuit aimed at securing accountability and financial compensation for the risks imposed upon you. Our firm evaluates these cases on a strict contingency fee basis, meaning there are never any out-of-pocket costs or fees unless we successfully recover compensation on your behalf.
Received the 1000Shaffer, Geraldine v. InHome Selective Care LLC11 notification letter? The 1000Shaffer, Geraldine v. InHome Selective Care LLC11 case file tracks this filing.
What to do if you were affected
Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.
Freeze your credit
Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.
Check for medical identity theft
Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Source: Indiana Attorney General filing
Related data breach cases
- Teamsters Local 17
- Bank
- 9World Acceptance Corporation
- McKenzie Creative Brands
- MEBS Global Reach
- Midvale Indemnity and American Family Connect Insurance Company
- American Motorcyclist Association
- Nishiyamato Academy
- Deer Management Co. LLC dba Bessemer Venture Partners
- The Association of the Bar of the City of New York
- Poppins Payroll Company
- Baltimore Medical System Inc
- Chicago Psychoanalytic Institute
- 7The Association of the Bar of the City of New York