Plaintiffs allege — Call-on-Doc has not confirmed in any notice we found — that Dallas telehealth provider Call-On-Doc, Inc. (callondoc.com) suffered a December 2025 intrusion after which ~1,144,223 patient records were listed for sale on a hacking forum (actor moniker iProfessor in reporting). Complaints describe exposed names, addresses, contacts, medical categories/conditions, services/prescriptions, and payment/transaction fields.
Federal cases are consolidated in the Northern District of Texas as In Re Call-on-Doc Inc Data Breach Litigation (3:26-cv-00200, filed January 26, 2026).
We read lead/member complaints (Freifeld / Sanders / Garrigues texts via PACERMonitor). They repeatedly state the company had not notified patients or regulators as of filing. DataBreaches.net (Jan 24, 2026) likewise reported no reply and no AG filings found. Treat volumes and data types as attacker/plaintiff assertions until Call-on-Doc or OCR/OAG confirms.

Alleged incident (complaint / dark-web reporting)
| Field | Detail |
|---|---|
| Entity | Call-On-Doc, Inc. d/b/a Call-On-Doc.com — Dallas, TX |
| Alleged timing | December 2025 intrusion; forum listing ~Jan 22, 2026 |
| Alleged volume | ~1,144,223 patient records |
| Alleged data | PII + medical categories/conditions + Rx/services + payment fields |
| Org / OCR / OAG notice | Not found in our Aug 5, 2026 check |
| Federal litigation | In Re Call-on-Doc 3:26-cv-00200 (N.D. Tex, filed Jan 26, 2026) |
Independent Cybersecurity Audit
EmailMeNow audit of callondoc.com on August 5, 2026. 100% is the ideal.
| Domain | Overall | Identity | Transport | Website | Risk |
|---|---|---|---|---|---|
| callondoc.com | 48% | 35% | 15% | 45% | Below Average |

Key findings: 48% overall; 15% transport and 35% identity leave spoofed “telehealth portal / Rx refill” mail easy to deliver while lawsuits circulate.
Audit link: callondoc.com
Website-tech · blacklist · lookalikes · MFA
| Check | Result (Aug 5, 2026) |
|---|---|
| Website-tech | Laravel (no version); GoDaddy TLS; HTTP→HTTPS redirect not confirmed on probe |
| Blacklist | Clear on checked mail/domain lists |
| Cybersquat | 8 to review (calllondoc.com, callondocs.com, calondoc.com, …) |
| YubiKey / open TOTP | Not documented → Unevaluated |

Priority Actions
If you used Call-on-Doc: Assume phishing risk even without a letter; verify any “records release” email out-of-band; monitor EOBs and pharmacy accounts; freeze credit if you shared SSN.
For telehealth operators: Publish timely notices when dumps appear; close DMARC/MTA-STS gaps toward 100%; inventory lookalikes.
Related Trackers
- PsychPlus Gentlemen litigation (alleged)
- CHCP / Empowerment breach litigation
- Texas healthcare breaches 2026
- Texas OAG YTD dashboard
- All state AG trackers
Run a free Instant Cybersecurity Audit at audit.emailmenow.com or contact EmailMeNow IT Consulting.
Sources: CourtListener — In Re Call-on-Doc 3:26-cv-00200 · DataBreaches.net — Call-on-Doc alleged dump · EmailMeNow audit — callondoc.com