DisclosureLens
HackingRetail & ConsumerRetailStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedMulti-Stage ChainIdentity (basic)Financial accountFinancial credentialsLowActive

STEIN MART, INC.

bd_0c79434fc9735e43 · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Nov 14, 2018

To disclose

Affected

15state residents only

Confidence

65%
Full breach record for STEIN MART, INC.3 incidents on file

Stein Mart, Inc. notified customers of a third-party vendor incident involving Annex Cloud. Unauthorized code was present on the checkout process between Dec 28, 2017 and July 9, 2018, potentially capturing names, addresses, emails, and payment card details (including CVV). Stein Mart removed the code and the login feature while investigating. No specific count of affected individuals was provided.

Incident timeline

Dec 28, 2017

Begins

Nov 14, 2018

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed15 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.