Park'N Fly
bd_408c80d823e38689 · schema v1 · pii pii-v1
Full breach record for Park'N Fly →4 incidents on filePark 'N Fly notified customers of a data security event involving payment card data processed through its e-commerce website. The incident affected data from cards used between November 27, 2013, and December 24, 2014. Compromised data included card numbers, names, billing addresses, expiration dates, CVV codes, and potentially loyalty account credentials. PNF engaged forensic experts, enhanced security, implemented PayPal hosting, and offered 12 months of identity protection.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 27, 2013
Begins
Jan 13, 2015
Discovered
Jan 20, 2015
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_1b081412af8a20872015-01-20Verified
- New Hampshire State AGbd_7144a72e29ab04752015-01-20Verified
- California State AGbd_2cb24641f81286312015-01-13 · +7dCandidate
- New Hampshire State AGbd_02bdd2aa4b18807d2014-12-30 · +21dCandidate
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Dec 30 (NH), last Jan 20 (SC) — a 21-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.