Travel Caddy, Inc.
bd_28dec55f16d5ac4f · schema v1 · pii pii-v1
Full breach record for Travel Caddy, Inc. →Travel Caddy, Inc. dba Travelon notified customers of a data security incident where malicious code on its server collected credit card information (card number, CVV2, name, address, phone, email) from its shopping cart between Nov 13, 2015 and June 10, 2016. The code may have transmitted data to an outside party. Travelon deactivated the code, implemented monitoring, halted website orders, and offered one year of Equifax Credit Watch Gold identity theft protection.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 13, 2015
Begins
Aug 4, 2016
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_883eb11ac3b535002016-08-04Verified
- Massachusetts State AGbd_f6a25a25ae547f942016-08-09 · +5dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Aug 4 (NH), last Aug 9 (MA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.