Public Partnerships Data Incident Investigation
Public Partnerships LLC reported an allegation involving a former New York CDPAP network facilitator who may have attempted to sell consumer information. The company stated that its investigation had found no evidence that data was transmitted or sold, but certain personal and Medicaid-related information may have been involved. Strauss Borrelli PLLC is investigating the Public Partnerships data incident and its potential impact on consumers. If you received a notice, fill out the secure contact form on this page to help verify whether you may qualify to pursue a claim.
Key Facts at a Glance
- Entity Involved: Public Partnerships LLC (Payroll Administrator and New York CDPAP Fiscal Intermediary)
- Incident Type: Alleged attempted sale of CDPAP consumer data by a former network facilitator
- Date of Incident: Not identified; the alleged conduct remains under investigation
- Discovery Date: June 8, 2026
- Official Notice Date: August 7, 2026
- Exposed Information: Names, addresses, dates of birth, Medicaid ID numbers, PPL ID numbers, and New York Medicaid enrollment information may have been involved
- Affected Population: 12,018 individuals were reported in the supplied regulatory listing data; the company’s public statement did not provide a total
What Happened?
According to a statement from Public Partnerships, the company became aware on June 8, 2026, of an allegation that a former New York CDPAP network facilitator may have offered to sell access to consumer information to another contracted facilitator. The company reported that the other facilitator refused the alleged offer and notified Public Partnerships. The former facilitator reportedly had been terminated in March 2026 for noncompliance with program-integrity requirements.
Public Partnerships stated that it contacted the New York State Department of Health, which referred the matter to the Office of the New York Attorney General for investigation and enforcement. It also instructed the former facilitator to delete CDPAP information in its possession and began notifying consumers who had worked with that facilitator. The company’s statement said its investigation had found no evidence that information was transmitted or sold. The available disclosure therefore describes an allegation under investigation, not a confirmed sale or transfer of consumer data.
What Information Was Exposed?
Public Partnerships reported that the information potentially involved may include consumers’ names, addresses, dates of birth, Medicaid ID numbers, PPL ID numbers, and enrollment in New York Medicaid. These data elements can reveal both identity and health coverage information, even without detailed treatment records.
If misused, this combination of information could support medical identity theft, fraudulent patient billing, false insurance-verification requests, prescription-related inquiries, or phishing messages impersonating a health plan, caregiver program, or government agency. The disclosure does not establish that misuse occurred. Consumers should nevertheless treat unexpected requests for Medicaid identifiers, verification codes, payments, or account details with caution.
What Should You Do Next?
- Review your notice carefully: Confirm which person in your household may be affected, note enrollment deadlines, and keep the notice with any related emails or letters. Do not provide sensitive information in response to an unsolicited message claiming to concern this incident.
- Enroll in available protection services: Public Partnerships said potentially affected consumers would be offered complimentary identity protection and credit monitoring through Experian. Use the enrollment instructions in the official notice rather than links from unexpected emails or text messages.
- Check healthcare and Medicaid activity: Review explanations of benefits, Medicaid communications, prescription records, and provider bills for unfamiliar services. Report suspicious claims to the healthcare provider, insurer, or Medicaid program using a verified telephone number.
- Monitor your credit reports: Obtain reports from the three nationwide credit bureaus through AnnualCreditReport.com. Investigate unfamiliar accounts, address changes, or credit inquiries, and consider placing a fraud alert or security freeze if appropriate.
- Document suspicious activity: Preserve notices, screenshots, call logs, bills, and records of time or money spent addressing suspected misuse. Public Partnerships has listed 833-706-5436 as its dedicated number for questions about the matter.
Your Legal Rights
People whose personal or health coverage information may have been involved could have rights under federal or state privacy, consumer-protection, data-security, or breach-notification laws. The rights available depend on facts that may still be under investigation, including whether information was accessed, transferred, sold, or misused and whether the organization’s safeguards and response complied with applicable requirements.
Potential remedies may include reimbursement for documented losses or protective expenses, compensation where authorized by law, or measures designed to improve information security. Receiving a notice does not automatically establish a valid legal claim, and the absence of known fraud does not necessarily resolve every legal issue. Preserve relevant documents and seek a case-specific evaluation if you have questions; this general information is not individualized legal advice.
Why Hire Strauss Borrelli PLLC?
Strauss Borrelli PLLC represents individuals in privacy, cybersecurity, and data incident matters. The firm can evaluate available notices and disclosures, investigate how information may have been handled, and assess whether affected consumers may have claims under applicable law. A confidential consultation can also help individuals understand the investigation process, preserve relevant evidence, and identify practical next steps without assuming that a particular outcome or recovery is guaranteed.
If you received a breach notification letter from Public Partnerships LLC:
We would like to speak with you about your rights and potential legal remedies in response to this data breach. Please fill out the form, below, or contact us at 872.263.1100 or sam@straussborrelli.com.










