Carl's Golfland, Inc.
bd_7d90af25dbac36dc · schema v1 · pii pii-v1
Full breach record for Carl's Golfland, Inc. →Carl's Golfland, Inc. notified customers of a breach of its online shopping website. Unauthorized access occurred between March 25 and July 14, 2019, resulting in the exfiltration of credit card data (number, expiration, CVV) and customer PII (names, addresses, emails, phone numbers). The breach was discovered in late June 2019 via a bank inquiry. The company engaged in a forensic audit and cooperated with the Secret Service.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 25, 2019
Begins
Jun 30, 2019
Discovered
Aug 30, 2019
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- California State AGbd_f65db5f674f0c7e42019-08-30Verified
- New Hampshire State AGbd_27a44c08f1bbe1102019-08-28 · +2dVerified
- Massachusetts State AGbd_39cf9402bb47fb8e2019-09-03 · +4dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Aug 28 (NH), last Sep 3 (MA) — a 6-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.