UnknownOtherIDENTITY_GOVERNMENTPIIMedium
Graebel Companies, Inc.
bd_8f785a8bea830a5e · schema v1 · pii pii-v1
Full breach record for Graebel Companies, Inc. →Graebel Companies, Inc. based in Aurora, Colorado, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-10-13 and reported on 2025-11-12. 267 Texas residents were affected. 5,573 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number). Consumers were notified via Posted at company website or special website;U.S. Mail.
Texas clock✓ TX AG ≤30d4 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_22d338674a0c0fa3Maine State AGfiled 2025-11-10(2d gap)Candidate
- bd_2c087f5658292a9bNew Hampshire State AGfiled 2025-11-10(2d gap)Verified
- bd_3338885415a19f86Indiana State AGfiled 2025-11-10(2d gap)Verified
- bd_362736f9c58a9c4aVermont State AGfiled 2025-11-10(2d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 2d gap
- bd_8a7899be71a5b644Montana State AGfiled 2025-11-10(2d gap)Candidate
Source provenance
- Source URL
- https://oag.my.site.com/datasecuritybreachreport/apex/DataSecurityReportsPage#BR-0004660
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 12, 2025
- Raw hash
- d42d33c303547f922abdf94c34f9000fb90855b7498e47cdcbc86b27baf99d28
Reporting entity
- Name
- Graebel Companies, Inc.norm: graebel companies
Victim entity
- Name
- Graebel Companies, Inc.norm: graebel companies
- Industry
- Otherllm
Incident
- Discovered
- Oct 13, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 267
- Data types
- IDENTITY_GOVERNMENTPII
- Attack vector
- Unknown
- Threat actor
- External
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- TX AG ≤30d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.