Rakuten USA, Inc.
bd_3174790e2060a4d9 · schema v1 · pii pii-v1
Full breach record for Rakuten USA, Inc. →Rakuten USA, Inc. (DBA Rakuten Americas) notified the California Attorney General of a data breach involving an employee who transferred files containing sensitive personal information (name, SSN, date of birth) of other employees to a personal device while voluntarily leaving the company. The incident was detected on January 21, 2021. The company deleted the files from the personal device, contacted law enforcement, and offered credit monitoring to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 21, 2021
Begins
Jan 21, 2021
Discovered
Feb 11, 2021
Filed
vs. sector median
16 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_57c9021e9307b3f72021-02-11Verified
- Montana State AGbd_5b9c71cefac703172021-02-11Candidate
- Maine State AGbd_d667a4564196f04a2021-02-11Verified
- New Hampshire State AGbd_3748bb1494a21cbc2021-02-18 · +7dVerified
Show 1 more filing ↓Show fewer ↑up to 7d gap
- Indiana State AGbd_8175a8bc61f31f992021-02-04 · +7dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Feb 4 (IN), last Feb 18 (NH) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.