DisclosureLens
HackingRetail & ConsumerRetailCustomer Data InvolvedFinancial accountIdentity (basic)Government IDPCIMediumContained

Janome America, Inc.

bd_ad8458e4bc8ee3c6 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Oct 8, 2025

Filed

Jul 31, 2026

To disclose

42 weeks

Affected

77state residents only

Linked

3 filings

Confidence

66%
Full breach record for Janome America, Inc.

Janome America, Inc. notified Massachusetts residents of a data security incident discovered on October 8, 2025. Unauthorized access to files containing personal information (names) occurred, though no evidence of misuse was found. Janome engaged cybersecurity experts and offered TransUnion identity protection services, including credit monitoring and dark web monitoring, to affected individuals. Notification letters were issued on July 10, 2026.

Massachusetts clock MA AG >90d42 weeks discovery → filing

Incident timeline

discovery → filing · 42 weeks / 296 days

Oct 8, 2025

Discovered

Jul 31, 2026

Filed

vs. sector median

+35 wks slower

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Nebraska State AGJul 10 · first
Massachusetts State AG+21d · this page

Pattern: first filing Jul 10 (NE), last Jul 31 (MA) — a 21-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.