Skip to content
Back to Blog
high severity April 28, 2026 · 3 min read

Churchill Claims Services, Inc. Data Breach Notice (Vermont Attorney General)

If you received a notice from Churchill Claims Services, Inc., here’s what the filing says was exposed, and what to do about it.

Churchill Claims Services, Inc. notified Vermont residents of a data breach in a filing reported to the Vermont Attorney General on April 28, 2026, and the notice lists social security numbers, government ID numbers among the information exposed.

Churchill Claims Services, Inc. Data Breach Notice (Vermont Attorney General)

A Social Security number or government ID exposed in a breach cannot be replaced the way a credit card or password can. For the 16 Vermont residents named in this filing, that permanence is now the central fact.

Churchill Claims Services, Inc. filed notice with the Vermont Attorney General on April 28, 2026 stating that social security numbers and government ID numbers were exposed. The record lists no other categories. No passwords, no financial account numbers, and no medical information appear in the filing. This is genuinely limited exposure compared with most notices, yet the two categories that were involved are among the most durable for identity theft.

What These Numbers Enable Long-Term

When someone obtains both your name and your Social Security number, they gain the primary key that many financial institutions, government agencies, and credit bureaus use to confirm identity. With a government ID number added, the same information can be used to request copies of tax transcripts, open new accounts, or file fraudulent unemployment or tax returns. These risks do not fade after 90 days or a year; the numbers remain valid for decades.

The filing does not disclose whether the data was copied and taken or simply viewed. It also does not state when the incident occurred, only that the notification reached the Attorney General on April 28, 2026. Because the record contains no incident date, there is no reliable way to calculate how long the information may have circulated before notification.

The Only Practical Way to Learn If You Are One of the 16

Churchill Claims Services is required to notify affected individuals directly, usually by mail. If you receive a letter from them, your records were included. Absence of a letter usually means you were not in the affected group. However, anyone who has moved since the time of the incident should contact the company directly to confirm their status, because mailed notices can miss updated addresses.

Why Government IDs and SSNs Matter More Than Most People Assume

A Social Security number cannot be reissued on request the way a compromised password or credit card can. Once it is paired with your name in the wrong hands, it becomes a permanent anchor for synthetic identity fraud or tax-related scams. Government ID numbers function in much the same way: they are designed to prove you are who you say you are, which also makes them powerful when stolen.

Because this filing lists only these two categories, the immediate risk is identity-related rather than account takeover. No password was exposed, so there is no need to change any Churchill Claims Services password for this incident. That distinction is important. Many breach notices require urgent credential changes; this one does not.

What Remains Under Your Control

You cannot erase the numbers from every copy that may now exist, but you can make them far less useful to an identity thief. Placing a freeze on your credit reports at the three major bureaus stops most new-account fraud before it starts. Monitoring your tax transcripts each year catches fraudulent filings early. These steps do not undo the breach, but they limit what an attacker can actually do with the information.

The small number of people affected — only 16 Vermont residents — suggests the incident was narrowly scoped. The filing itself offers no further detail on root cause, so speculation about how it occurred is pointless. What matters is the content of the records that left the company’s control and the fact that two of the hardest-to-change identifiers were included.

Placing This Incident in Perspective

Most people who visit breach notification pages are not personally affected. If you have an account or past relationship with Churchill Claims Services and have not received a letter, the odds are strongly in your favor that your information was not part of this filing. The record is narrow, the number of people small, and the exposed categories limited to information that, while serious, can be defended against with standard identity-protection steps.

The letter remains the definitive answer. Read it when it arrives, note exactly which categories it says applied to you, and act on the concrete risks those categories create. For the 16 people who were included, the exposure of Social Security and government ID numbers creates a permanent increase in identity-theft risk that requires ongoing attention rather than a one-time fix.

What to do now

Steps that match what this notice says was exposed

Every step below is free and you do it yourself, and none of it depends on Churchill Claims Services, Inc..

  1. Freeze your credit — this is the one that matters. A freeze is free, it takes minutes, and it has to be done separately at all three bureaus: Equifax, Experian and TransUnion. It stops a new account being opened in your name, which is what a Social Security number in the wrong hands is for. You can lift it temporarily whenever you need credit.

One more, whatever was exposed: a breach notice is a favourite disguise for a phishing email. If a message about this arrives, do not use its links — go to the company’s site yourself, or call the number on your statement.

Report details & sourcing

Severity High includes at least one identifier that cannot be reissued
Disclosed April 28, 2026
Last reviewed July 22, 2026
Affected 16
Data exposed Social Security Numbers, Government ID Numbers
Editorial & sourcing policy
GalaxyWarden is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data. Breach information is compiled from publicly accessible sources and threat-intelligence platforms, and is reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — see our content & takedown policy or write to support@galaxywarden.com.
Share this Post on X Reddit Email