DataBreachPayment.com
MonitoringIndiana AG filing · November 19, 2025

The 1000Shaffer, Geraldine v. InHome Selective Care LLC11 Data Breach: Incident Facts and Free Case Review

InHome Selective Care LLC operates within the specialized home healthcare and caregiving services sector, delivering vital medical support, nursing care, and daily living assistance directly to patients' residences. Because the organization coordinates comprehensive in-home medical treatments and personal care services, it routinely collects, processes, and stores an extensive volume of highly sensitive personal and protected health information. This trove of data is indispensable for patient intake, care coordination, insurance billing, and staffing operations, making the enterprise a repository for deeply personal and vulnerable records.

Received a 1000Shaffer, Geraldine v. InHome Selective Care LLC11 notification letter? Find out in minutes if you qualify for compensation.

Free case review
State
Indiana
Breach date
October 9, 2025
Reported
November 19, 2025

What may have been exposed

  • Full Name
  • Date of Birth
  • Social Security Number
  • Medical Record Number
  • Health Insurance ID Number
  • Diagnosis and Treatment Information
  • Home Address
  • Phone Number

In 2025, InHome Selective Care LLC reported a formal data security incident to the Indiana Attorney General. While the full mechanics of the intrusion continue to be investigated, breaches impacting home healthcare providers typically involve unauthorized access to internal administrative networks, compromised database servers, or vulnerabilities within third-party vendor platforms used for scheduling and electronic health record management. Such incidents often stem from inadequate network segmentation, unpatched software vulnerabilities, or sophisticated cyber-threat methodologies designed to bypass legacy perimeter defenses.

The exposure resulting from this security failure implicates a dangerous array of sensitive information, including full names, dates of birth, Social Security numbers, health insurance details, and detailed medical diagnosis and treatment histories. The compromise of protected health information and financial identifiers in the healthcare sector creates severe, immediate risks for victims. Unlike transient data breaches, leaked medical records and Social Security numbers cannot be easily reset or replaced, exposing individuals to prolonged threats of targeted medical fraud, fraudulent insurance claims, tax identity theft, and unauthorized financial account takeover that can destabilize a victim's financial and personal well-being for years.

Under federal and state regulatory frameworks, including the Health Insurance Portability and Accountability Act (HIPAA) and Indiana state data protection statutes, InHome Selective Care LLC had a stringent legal obligation to implement and maintain robust administrative, physical, and technical safeguards to protect confidential patient and employee records. The occurrence of a data breach of this magnitude serves as prima facie evidence of a potential failure in fulfilling these mandatory security duties. Organizations entrusted with sensitive health data are required to encrypt stored files, enforce multi-factor authentication, monitor network traffic for anomalous behavior, and continuously audit third-party security postures to prevent unauthorized exfiltration.

Receiving a formal data breach notification letter from InHome Selective Care LLC is a serious legal development, serving as an admission by the company that your confidential information was compromised due to inadequate security measures. Under the law, this notification establishes the legal standing necessary to participate in a class action lawsuit aimed at securing accountability and financial compensation for the risks imposed upon you. Our firm evaluates these cases on a strict contingency fee basis, meaning there are never any out-of-pocket costs or fees unless we successfully recover compensation on your behalf.

Received the 1000Shaffer, Geraldine v. InHome Selective Care LLC11 notification letter? The 1000Shaffer, Geraldine v. InHome Selective Care LLC11 case file tracks this filing.

What to do if you were affected

Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.

  • Freeze your credit

    Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.

  • Check for medical identity theft

    Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.

  • Stay alert to targeted scams

    Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.

  • Keep your notification letter

    Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.

Source: Indiana Attorney General filing

Related data breach cases