Questo, Inc.
bd_748d4d39d0e167ff · schema v1 · pii pii-v1
Full breach record for Questo, Inc. →Questo, Inc. reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-07-22. The reporting organization type is Other Commercial. 27 Vermont residents were affected. Categories of data breached: Social Security Numbers, Financial Account Codes, Credit and Debit Account Info.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Jul 22, 2026
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- New Hampshire State AGbd_b7acf1d77c834d252026-07-23 · +1dVerified
- Massachusetts State AGbd_1b7a85c31a3fd63b2026-07-17 · +5dVerified
- Texas State AGbd_6a303fe2629f33262026-07-17 · +5dVerified
- California State AGbd_a5c6ff979e16a9d82026-07-16 · +6dCandidate
Show 1 more filing ↓Show fewer ↑up to 7d gap
- Nebraska State AGbd_0a81a18aa78e777d2026-07-15 · +7dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jul 15 (NE), last Jul 23 (NH) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.