EatStreet
bd_6c8bdb60faeed336 · schema v1 · pii pii-v1
Full breach record for EatStreet →On May 3, 2019, an unauthorized third party gained access to EatStreet's database, which was discovered on May 17, 2019. The incident affected delivery partners, restaurant partners, and diners. Compromised data included names, phone numbers, email addresses, bank account and routing numbers for partners, and payment card information (including CVV) for diners. EatStreet engaged forensic investigators, terminated unauthorized access, and enhanced security controls including MFA and credential rotation.
J jump to incidentP pin to compareR raw source
Incident timeline
May 3, 2019
Begins
May 17, 2019
Discovered
Jun 14, 2019
Filed
vs. sector median
15 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_1cc588007e9343b02019-06-14Verified
- Montana State AGbd_479241cd8f1e9b6e2019-07-14 · +30dVerified
- South Carolina State AGbd_a08f50a84a4629542019-08-06 · +53dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Jun 14 (MA), last Aug 6 (SC) — a 53-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.