Retail Therapy LLC
bd_a759ec217efecd1c · schema v1 · pii pii-v1
Full breach record for Retail Therapy LLC →Retail Therapy LLC, a retail entity, notified Nebraska regulators of a cybersecurity incident where an unauthorized third party accessed systems between Nov 20 and Dec 11, 2025. The breach potentially exposed PII including SSNs, driver's licenses, and passport numbers. One Nebraska resident was notified on April 14, 2026. The company engaged federal law enforcement, provided 12 months of credit monitoring via TransUnion, and implemented additional employee safeguards.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 20, 2025
Begins
Apr 14, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_0bacc1375bf939cb2026-04-14Candidate
- New Hampshire State AGbd_27e75c8dbe1e643c2026-04-14Verified
- Maine State AGbd_6a5473e21eff0eff2026-04-14Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.