PalmFlex, Inc
bd_9ec6bf66561cd35f · schema v1 · pii pii-v1
Full breach record for PalmFlex, Inc →2 incidents on filePalmFlex, Inc. notified Massachusetts customers on July 15, 2026, that payment card information may have been accessed by an unauthorized third party. The company engaged hosting providers and cybersecurity specialists to investigate, secure systems, reset credentials, and implement additional access restrictions. No specific count of affected individuals was provided.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Jul 15, 2026
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- New Hampshire State AGbd_db6d1142a19f0a542026-07-21 · +6dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Jul 15 (MA), last Jul 21 (NH) — a 6-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.