Flurish Inc.
bd_01a06f041ef29f23 · schema v1 · pii pii-v1
Full breach record for Flurish Inc. →Flurish Inc. dba LendUp notified customers that personal information (names, emails, phone numbers, addresses, DOBs, SSNs) may have been inadvertently collected by third-party analytics and advertising widgets on their website as early as 2012. The company launched an investigation and implemented controls to prevent recurrence. No evidence of misuse was found. 12 months of identity protection via AllClear ID was offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 1, 2012
Begins
May 16, 2016
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Oregon State AGbd_4667c499107624a72016-05-16Candidate
- Massachusetts State AGbd_b768a952b027794a2016-05-17 · +1dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.