DisclosureLens
HackingRetail & ConsumerRetailStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedData ExfiltratedPCIPIIIdentity (basic)LowActive

Garden of Life, LLC

bd_a7462c85743ddfbd · schema v1 · pii pii-v1

Severity

Low

Discovered

Dec 18, 2024

Filed

Jan 17, 2025

To disclose

4 weeks

Affected

354state residents only

Linked

11 filings

Confidence

66%
Full breach record for Garden of Life, LLC2 incidents on file

Garden of Life, LLC notified the NH Attorney General of a data incident affecting 354 NH residents. Unauthorized access to a third-party payment processing software on its website occurred in July 2024 and was discovered on Dec 18, 2024. Payment card info and consumer PII were accessed. Garden of Life engaged cybersecurity experts, isolated the system, and offered credit monitoring via IDX.

Incident timeline

undetected · 170 days
discovery → filing · 4 weeks / 30 days

Jul 1, 2024

Begins

Dec 18, 2024

Discovered

Jan 17, 2025

Filed

vs. sector median

3 wks faster

This filing is one of 11 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (10) · sorted by filing gap

Show 6 more filingsup to 300d gap

Filing propagation · 11 filings · 11 states

View merged incident ↗

Pattern: first filing Jan 1 (IL), last Nov 13 (MD) — a 316-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.