FEDERALUnknownLow
THE KROGER CO.
bd_ed6a0822c50ee068 · schema v1 · pii pii-v1
Full breach record for THE KROGER CO. →The Kroger Co. filed its 10-K Item 1C disclosing its cybersecurity risk management and governance framework. The company states it is not aware of any material cybersecurity threats that have materially affected its business, financial condition, or results of operations in the last three years. The filing details the Kroger Cybersecurity Risk Management (CRM) program, Third-Party Cybersecurity Risk Management (TPCRM) program, and Cyber Incident Response Plan (IR Plan). Governance is overseen by the Audit Committee with quarterly reporting from the CDO and CISO.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/56873/000110465926037723/kr-20260131x10k.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Mar 31, 2026
- Raw hash
- 88a5bcd0a34a3e3547f61d5129fa3f6f2b3d4c9220f80220ff4b98be2f3bc64e
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- THE KROGER CO.norm: the kroger
- Domain
- kroger.com
Victim entity
- Name
- THE KROGER CO.norm: the kroger
- Domain
- kroger.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.