Stripe GEP, Inc.
bd_9d6a179edc0c075c · schema v1 · pii pii-v1
Full breach record for Stripe GEP, Inc. →Stripe GEP, Inc. notified individuals that their personal information, including names and Social Security numbers, may have been accessed by an unknown third party due to a security vulnerability in the document storage system of its service provider, Legalinc Corporate Services Inc. The incident affected approximately 2,670 individuals who used the Stripe Atlas service. The vulnerability existed between October 25, 2017, and December 4, 2019. Stripe discovered the issue on December 11, 2019. Legalinc has addressed the vulnerability. Stripe is offering one year of complimentary credit monitoring and identity protection services.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 25, 2017
Begins
Dec 11, 2019
Discovered
Dec 31, 2019
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Montana State AGbd_e0637c912610d8ff2019-12-31Candidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.