1Life Healthcare Reports Data Incident to Washington AG
1Life Healthcare, operating as One Medical and Iora Health, reported a data incident to the Washington Attorney General on July 3, 2026. The company is currently investigating the event, which may have exposed personal information belonging to individuals. Those who received notification letters should review the official filing for details.
- State
- Washington
- Reported
- July 3, 2026
1Life Healthcare, Inc., widely known through its brands One Medical and Iora Health, has officially reported a data security incident to the Washington Attorney General's office. This report was filed on July 3, 2026, initiating a public record of the event.
According to the public filing, the company is actively investigating the scope and nature of the incident. While the specific details surrounding how the breach occurred remain unspecified, 1Life Healthcare has begun notifying individuals who may have had their personal information compromised.
It is important to note that the official filing does not specify the exact categories of personal information that may have been exposed. The report refers generally to "personal information" or "your data" that may have been involved in the incident. Readers should not infer specific data types, such as medical records or financial details, as the publicly available record does not confirm these.
Individuals who received a notification letter from 1Life Healthcare are advised to remain vigilant. It is recommended to monitor your accounts for any unusual activity and be cautious of unsolicited communications that request personal details. Regularly review statements from your financial institutions for any unauthorized transactions.
This information is provided to document the reported incident based on public filings made with regulators. It serves as a factual record for individuals seeking to verify the notification letters they may have received from 1Life Healthcare.
What to do if you were affected
These general steps can help limit the risk of identity theft and fraud after any data breach.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Related data breach cases
- Cornerstone Staffing Solutions, Inc.
- zHealth, Inc.
- Quatrro Business Support Services, Inc.
- Hibbett Retail, Inc.
- Catalyst Brands LLC
- LHC Group, Inc.
- Bimbo Bakeries USA (Oracle)
- The Lighthouse for the Blind, Inc.
- Virta Health Corp. and Virta Medical, PC (Department of Health And Human Services)
- Mogren, Glessner & Ahrens, P.S.
- See’s Candies, Inc.
- RB American Group LLC
- Greystar Real Estate Partners, LLC
- Cascade Coffee, LLC