Partnership HealthPlan of California Data Breach Exposes Social Security and Driver’s License Numbers

Published: 18 September 2026
Healthcare data breach illustration
Breach Discovery: July 2026Breach Notification: 17th September 2026

Partnership HealthPlan of California discovered in July 2026 that mailed Primary Care Physician Selection Forms and Welcome Packets sent between May and July 2026 contained other members’ Social Security numbers and driver’s license or state ID numbers. The number of people affected has not been disclosed. Affected individuals should place a fraud alert or credit freeze and monitor credit reports closely.

CompanyPartnership HealthPlan of California
IndustryHealthcare
Data Types ExposedSocial Security Numbers, Driver’s License or State ID Numbers
People AffectedNot Publicly Disclosed
Attack MethodMailing Error
Regulators NotifiedCalifornia Attorney General

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Partnership HealthPlan of California Data Breach?

Partnership HealthPlan of California has disclosed a privacy incident tied to a mailing error involving sensitive member documents. The organization discovered the problem in July 2026. As a result, an internal review began right away to determine the scope of the mix-up.

According to the notice, the issue centered on Primary Care Physician Selection Forms and Welcome Packets. These mailings went out between May 13, 2026, and July 8, 2026. During that window, some packets meant for one member instead contained information belonging to a different, unrelated member.

Once discovered, Partnership HealthPlan of California moved to secure the affected systems and records. The organization also launched a formal investigation into how the error occurred. In addition, staff reviewed existing privacy and security safeguards to identify gaps that allowed the mix-up to happen.

Following the investigation, the organization reported the incident to applicable regulatory agencies as required by law. It also provided additional workforce training where appropriate. These steps were meant to reduce the chances of a similar mailing error happening again in the future.

Who was affected?

This incident affects members of Partnership HealthPlan of California who were sent a Primary Care Physician Selection Form or Welcome Packet during the affected mailing period. Because these are enrollment-related documents, the affected group likely includes newly enrolled members or those updating their care provider information.

The exact number of individuals affected has not been publicly disclosed. However, the notification letters indicate that recipients received someone else’s personal details rather than their own. This means both the original intended recipient and the unrelated member whose data was mistakenly included could be considered affected.

Because Partnership HealthPlan of California is a health plan serving California residents, the affected population is likely concentrated within that state. There is no indication in the notice that minors were specifically involved, though family enrollment records can sometimes include dependents.

What Information Was Potentially Exposed?

The notice specifies which categories of personal information may have been included in the misdirected mailings. Importantly, the organization also clarified which types of data were not involved, which helps narrow the scope of concern for recipients.

  • Social Security number
  • Driver’s license or state identification number

The notice explicitly states that member identification numbers, dates of birth, and names were not involved in this particular incident. This narrower scope is somewhat reassuring, but the two categories that were exposed carry significant weight on their own.

Social Security numbers are among the most sensitive pieces of personal data a person can lose. Fraudsters can use them to open new credit lines, file fraudulent tax returns, or apply for loans in someone else’s name. Because SSNs rarely change, this kind of exposure can create risk that lingers for years.

Driver’s license and state ID numbers add another layer of concern. Criminals can use these numbers to create fake identification documents or pass identity checks. When paired with a Social Security number, the combination becomes especially valuable to identity thieves attempting to impersonate someone else.

What is the company doing?

In response to the discovery, Partnership HealthPlan of California secured the affected systems and records to stop further exposure. The organization also contained the incident and began a thorough internal investigation into the mailing process that led to the error.

As part of its ongoing response, the organization strengthened privacy and security safeguards across its mailing and enrollment procedures. It also expanded workforce training to help prevent similar mix-ups going forward. Notably, Partnership HealthPlan of California also filed a formal notification with the California Attorney General, as required under state law.

The organization has stated that it is not currently aware of any misuse of affected members’ information. Still, it has committed to notifying affected individuals if the ongoing investigation uncovers additional details that could impact them.

What Should Affected Individuals Do?

Monitor Your Credit Reports Closely

Affected individuals should request a free copy of their credit report from each of the three major credit bureaus. Reviewing these reports regularly can help you catch new accounts or inquiries you did not authorize.

Because Social Security numbers were involved, this step is especially important. Identity thieves often wait months before using stolen data, so ongoing monitoring over the next year or longer is a smart precaution.

Consider a Fraud Alert or Credit Freeze

Given that Social Security numbers and driver’s license numbers were potentially exposed, placing a fraud alert on your credit file is a reasonable next step. A fraud alert requires lenders to verify your identity before approving new credit in your name.

For even stronger protection, you can request a credit freeze with each credit bureau. This makes it much harder for anyone to open new accounts using your information, though you will need to lift the freeze temporarily if you apply for credit yourself.

Watch for Signs of Medical or Insurance Fraud

Since this incident involves a health plan, affected members should review any Explanation of Benefits (EOB) statements they receive. Unfamiliar charges or services you did not receive could indicate that your health plan information was misused.

If you notice anything suspicious on an EOB, contact Partnership HealthPlan of California right away. Reporting issues quickly can help limit further damage and correct your records before problems compound.

Stay Alert for Phishing Attempts

Scammers sometimes use breach news to trick people into revealing more personal information. As a result, affected individuals should be cautious of unexpected calls, texts, or emails asking for personal details.

Never click links or share information in response to unsolicited messages. Instead, contact the organization directly using verified contact information if you have questions about your account or coverage.

Know Your Legal Options

If your Social Security number or driver’s license number was exposed, you may have legal options worth exploring. Consulting a data breach attorney for a free case evaluation can help you understand whether you qualify for compensation.

Many attorneys handle these cases on a contingency basis, meaning there is no upfront cost to find out where you stand. This can be a straightforward way to protect your interests without added financial risk.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



More Information

Official data breach notification from California Attorney General

Related Data Breaches

See the latest data breaches we're tracking →