Skip to main content
Jump to a category page

A regulatory filing shows FCCI Insurance Group experienced a data security incident touching nearly every category of sensitive personal information a company can hold, but the company has not yet sent notice letters to the people affected.

FCCI Insurance Group, a Sarasota, Florida-based commercial property and casualty insurer that writes policies in roughly 20 states, has reported a data security incident to the Texas Attorney General’s office. According to the filing, published September 3, 2026, 376 Texas residents were affected. As of the filing date, FCCI had not yet provided notice to consumers, meaning the timeline for when, or whether, affected individuals will be formally notified has not been established.

Because FCCI operates as a commercial insurer writing workers’ compensation, general liability, and other business insurance across roughly 20 states, the Texas figure is likely only a portion of those affected nationwide. If you believe you may have been impacted by this incident, whether as a policyholder, claimant, or employee connected to an FCCI-insured business, it is worth paying close attention to any notice you may receive.

An Unusually Wide Range of Exposed Information

The Texas filing lists nine separate categories of information potentially involved in this incident, a wider data profile than most breaches reported on the same filing date. The categories are consistent with what an insurer collects when handling workers’ compensation and liability claims, where medical treatment records, government identification, and financial account details are all part of a single claim file.

  • Name
  • Address
  • Social Security number
  • Driver’s license number
  • Government-issued identification number, such as a passport or state ID
  • Financial account or payment card information
  • Medical information
  • Health insurance information
  • Date of birth

What Happens Next

FCCI has not yet disclosed how the incident occurred, how many people are affected nationwide, or when individual notice letters will go out. This post will be updated as more information becomes available. In the meantime, if you have received a letter from FCCI Insurance Group about a data security incident, or if you believe your information may have been involved because you filed a claim with or were insured through FCCI, it is worth taking the notice seriously and understanding your options.

Your Personally Identifiable Information (PII) includes information that can be used to identify you, such as your name and other personal details. Companies that collect this information are legally required to safeguard it. When PII is exposed in a data breach, it can potentially be used by cybercriminals to commit identity theft, financial fraud, or other misuse.

Some of the information described in this filing, including medical and health insurance information, may also qualify as Protected Health Information (PHI). PHI includes medical or healthcare-related data protected under federal and state privacy laws. When PHI is compromised, it can be misused for medical identity theft or insurance fraud.

Do You Have Legal Options?

Insurance companies handle some of the most sensitive information their customers and claimants have, including Social Security numbers, medical records, and financial account details, and are required by law to safeguard it. If you believe your information was involved in this incident, you may have rights and remedies under applicable law once formal notice is provided.

If you believe you may have been affected by the FCCI Insurance Group data security incident, contact the Data Breach Attorneys at Emery | Reddy for a Free Case Review.

Frequently Asked Questions

Has FCCI Insurance Group sent notice letters yet?

Not as of the September 3, 2026 regulatory filing. FCCI reported the incident to the Texas Attorney General but had not yet provided notice to affected consumers. Individual notice letters, if sent, would typically follow.

How many people were affected?

The Texas filing confirms 376 affected Texas residents. FCCI writes insurance in roughly 20 states, so the true nationwide number, if disclosed, is likely to be higher.

What information was involved?

The Texas filing lists name, address, Social Security number, driver’s license number, government-issued identification number, financial account or payment card information, medical information, health insurance information, and date of birth as potentially involved categories.

I am an FCCI policyholder or filed a claim through FCCI. Am I affected?

FCCI has not published a detailed description of who is affected. If you have an active or past policy, or filed a workers’ compensation or liability claim involving FCCI, watch for a notice letter and consider reaching out to a data breach attorney to understand your options.

Is FCCI offering credit monitoring?

FCCI has not yet disclosed what remedy, if any, it will offer affected individuals. This post will be updated once that information is available.

Do I have a legal claim?

You may. Companies that collect Social Security numbers, medical records, and financial information are required by law to protect that data. Contact the Data Breach Attorneys at Emery | Reddy at 916.995.5968 or www.emeryreddy.com for a Free Case Review. No Fee Unless We Recover.

"Very friendly interview and intake process. I was informed thoroughly about the processes in obtaining a lawyer and was given ample time to make a decision on representation. I’m thankful for everyone’s help and looking forward to working with this Firm on my worker’s compensation claim."

- Darren A.

Receive a
FREE Case Review

Call Now