Springstone Financial
bd_824b4366f137c7ca · schema v1 · pii pii-v1
Full breach record for Springstone Financial →Springstone Financial notified the NH AG of unauthorized access to web-based email accounts affecting ~26 NH residents. Data included PII, SSNs, bank info, and health data. No evidence of misuse. Actions: internal investigation, password resets, forensic retention, law enforcement contact, auth system changes, and 1-year identity protection offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 14, 2018
Discovered
Dec 18, 2018
Filed
vs. sector median
8 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_4ca39d3c64cf764c2018-12-19 · +1dVerified
- Oregon State AGbd_18d2f7692be0d68c2018-12-14 · +4dCandidate
- Montana State AGbd_635898513261d37a2018-12-14 · +4dVerified
- California State AGbd_e26fda87fe01aebb2018-12-14 · +4dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Dec 14 (OR), last Dec 19 (MA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.