Minimed Distribution Corp
bd_8ed689cca36706d2 · schema v1 · pii pii-v1
Full breach record for Minimed Distribution Corp →3 incidents on fileMedtronic MiniMed and MiniMed Distribution Corp disclosed that tracking technologies (Google Analytics, Crashlytics, Firebase Authentication) in the InPen App inadvertently transmitted user data to Google. The incident affected users since September 2020. Data exposed included email, IP address, phone number, usernames, passwords, and device identifiers. No SSN or financial data was involved. The company removed Google Analytics and is transitioning to new platforms.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 1, 2020
Begins
Feb 13, 2023
Discovered
Apr 14, 2023
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Washington State AGbd_03be0669e0a17edb2023-04-14Verified
- Oregon State AGbd_1625edd17f6757c42023-04-14Verified
- HHS OCRbd_92fc04ad3510e5402023-04-14Verified
- Illinois State AGbd_8dd20bfa7f1c77ea2023-01-01 · +103dCandidate
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Apr 14 (CA) — a 103-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.