IDScan.net says an unauthorised third party may have accessed or copied information stored in customer accounts on its cloud platform, potentially including full names and driver’s-licence or other government-issued identification numbers. The company’s September 4, 2026 incident notice says it is offering potentially affected individuals free credit monitoring and identity-protection services while its investigation continues.

The notice does not confirm that every listed type of information was accessed, that data was publicly exposed, or that misuse or identity fraud occurred. It also does not disclose how many people, accounts or customer organisations may be involved.

Contents

What happened

IDScan.net says it received information on or around September 1 indicating that certain data may have been accessed without authorisation. The company says it immediately took steps to secure its systems and engaged third-party specialists to investigate the nature and scope of the incident.

According to the notice, an unauthorised third party may have accessed and/or copied certain customer information stored within accounts on the IDScan.net cloud platform. IDScan.net says full access to the information required payment, but the notice does not explain the payment mechanism, identify who made the payment or describe how the third party obtained access.

The company says it has reviewed relevant data-security policies and procedures and is cooperating with federal law enforcement. The investigation was still ongoing when the notice was published.

IDScan.net describes its platform as cloud-based software used to scan and verify identity documents, including driver’s licences, passports and mobile driver’s licences. The incident notice concerns information held in customer accounts on that cloud platform; it does not state that the company’s physical identity-scanning hardware was compromised.

What data may be involved

The potentially affected information may include:

  • full names;
  • driver’s-licence numbers; and
  • numbers from other government-issued identification documents.

These are identity attributes that can be used in impersonation or some forms of account-opening fraud. However, possession of such information does not by itself establish that fraud has occurred.

The notice describes possible categories of information rather than confirming that each category was accessed for every potentially affected person. It does not say whether complete driver’s-licence records were involved, whether additional fields were stored or accessed, or whether encryption protected any of the information.

IDScan.net also has not disclosed which customers, accounts, jurisdictions or specific platform services may have been affected. The source does not provide a confirmed number of individuals or organisations.

What the company is doing

IDScan.net says it is notifying potentially impacted individuals and offering free credit monitoring and identity-protection services. The notice provides a telephone number and postal address for questions about the incident or enrolment, but it does not describe the provider, duration or terms of those services.

The company advises people who may be affected to review their credit reports and account statements. It also says they may place a fraud alert or credit freeze through the credit-reporting agencies.

A fraud alert asks creditors to take additional steps to verify identity before extending credit. A credit freeze restricts access to a consumer’s credit file for new-credit checks. Both measures are generally intended to reduce some forms of new-account identity fraud, although they do not establish whether information was misused and do not address every type of fraud.

The notice also directs readers to the Federal Trade Commission and state attorneys general for identity-theft information. It does not cite a specific breach-notification law, regulator filing or enforcement action.

Sources