Guidecraft, Inc
bd_78b2bed0ea9d45eb · schema v1 · pii pii-v1
Full breach record for Guidecraft, Inc →Guidecraft, Inc. notified the NH AG of a data event affecting 67 NH residents. Unauthorized code was injected into guidecraft.com between Sept 2021 and Dec 2022, exposing customer checkout data (PII, credit/debit card info). A vendor backup error further exposed transactions from Feb 2023. Guidecraft engaged forensic specialists, secured the site, and notified affected individuals and credit bureaus.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 21, 2021
Begins
Dec 29, 2022
Discovered
Feb 23, 2023
Scope determined
Mar 27, 2023
Filed
vs. sector median
+5 wks slower
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Maine State AGbd_4e513b290187f7022023-03-23 · +4dVerified
- California State AGbd_6bf63214db4c2b3a2023-03-23 · +4dCandidate
- Montana State AGbd_782746619e5e1e0b2023-03-23 · +4dVerified
- Massachusetts State AGbd_94283fc6750b626f2023-03-23 · +4dVerified
Show 2 more filings ↓Show fewer ↑up to 32d gap
- Indiana State AGbd_bb2e6359e91e56ea2023-03-23 · +4dVerified
- Vermont State AGbd_f58c952c55705a1d2023-02-23 · +32dVerified
Filing propagation · 7 filings · 7 states
View merged incident ↗Pattern: first filing Feb 23 (VT), last Mar 27 (NH) — a 32-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.