Stretto, Inc.
bd_d220c2724129b6bb · schema v1 · pii pii-v1
Full breach record for Stretto, Inc. →Stretto Inc. notified South Carolina residents of a security incident where an employee account was subject to unauthorized access starting April 17, 2024. Stretto disabled the account, changed the password, and engaged external cybersecurity professionals. Confirmed data accessed included name, address, email, phone, and claim amounts. No SSN/TIN evidence found. No evidence of misuse.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 17, 2024
Discovered
May 21, 2024
Filed
vs. sector median
14 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Indiana State AGbd_c68b9f29fab17d642024-05-21Verified
- Delaware State AGbd_779f78b1f2a489b92024-05-23 · +2dVerified
- Illinois State AGbd_04619c2c30a0d33f2024-05-01 · +20dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing May 1 (IL), last May 23 (DE) — a 22-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.