DisclosureLens
HackingRetail & ConsumerRetailCustomer Data InvolvedFinancial accountIdentity (basic)LowContained

Easy Breathe, Inc.

bd_0ffdb705de61caaf · schema v1 · pii pii-v1

Severity

Low

Discovered

Feb 10, 2017

Filed

Mar 27, 2017

To disclose

6 weeks

Affected

Not disclosed

Linked

6 filings

Confidence

65%
Full breach record for Easy Breathe, Inc.

Easy Breathe, Inc. notified customers of a data breach where an unknown individual accessed payment card information (name, address, phone, credit/debit card details) used for online purchases. The breach occurred on January 4, 2017, and was discovered on February 10, 2017. The company secured its systems, engaged IT experts, and offered 12 months of identity protection via AllClear ID.

California clockDiscovered Feb 10, 2017Notified Mar 27, 201745d CA 60-day OK6 weeks discovery → filing

Incident timeline

undetected · 37 days
discovery → filing · 6 weeks / 45 days

Jan 4, 2017

Begins

Feb 10, 2017

Discovered

Mar 27, 2017

Filed

vs. sector median

1 wks faster

This filing is one of 6 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (5) · sorted by filing gap

Show 1 more filingup to 4d gap

Filing propagation · 6 filings · 6 states

View merged incident ↗
Oregon State AGMar 27 · first
New Hampshire State AGMar 27 · first
Massachusetts State AGMar 27 · first
Washington State AGMar 27 · first
California State AGMar 27 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.