THIRTY-ONE GIFTS LLC
ent_019e5e7f3ae7bb4567b79c300575f83b
Disclosures
11
State AG · 9 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
132,606
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- THIRTY-ONE GIFTS LLC
- Normalized
- thirty one gifts— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300LXSCRTF4ZTS314
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- mythirtyone.com
- Corporate parent
- TOG Holding Co.— as stated in the breach filing
Disclosure history (11)newest first
- South Carolina State AGas victim2023-08-30
Thirty One Gifts LLC notified South Carolina consumers of a data security incident discovered on July 21, 2023. An unauthorized third party captured credit card information entered on the company's website. Impacted data included names, addresses, credit card numbers, expiration dates, security codes, and email addresses. The company engaged its incident response team, worked with law enforcement, and provided two years of free identity monitoring services.
- Oregon State AGas victim2023-08-29
TOG Hold Co. & Thirty One Gifts reported a data breach to the Oregon Attorney General. The breach was reported on 2023-08-29. 132,606 individuals were affected.
- Massachusetts State AGas victim2023-08-28
TOG Hold Co. & Thirty One Gifts reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-08-28. 1,379 Massachusetts residents were affected. The report records the breach type as electronic.
- Delaware State AGas victim2023-08-27
Thirty One Gifts LLC (TOG) notified affected individuals of a data security incident on July 21, 2023, where an unauthorized third party captured credit card information entered on mythirtyone.com. TOG engaged its incident response team, worked with law enforcement, and notified credit card brands. Affected individuals are offered two years of identity monitoring services.
- California State AGas victim2023-08-26
Thirty One Gifts LLC disclosed that an unauthorized third party captured credit card information entered on its website mythirtyone.com. The company learned of the incident on July 21, 2023. Affected data includes credit card numbers, expiration dates, card security codes, names, addresses, and email addresses. The company engaged an incident response team, notified law enforcement and card brands, and stopped the unauthorized access. Two years of identity monitoring are being provided to affected individuals.
- New Hampshire State AGas victim2023-08-25
Thirty One Gifts LLC reported that an unauthorized third party captured credit card information entered on its website mythirtyone.com on July 21, 2023. The company launched an investigation, engaged its incident response team, worked with law enforcement, notified credit card brands, and stopped the unauthorized access. The incident affected New Hampshire residents.
- Idaho State AGas victim2023-08-25
Thirty One Gifts LLC notified Idaho AG on August 25, 2023, of a July 21, 2023, incident where an unauthorized third party captured credit card information entered on its website. The company engaged its incident response team, worked with law enforcement, and notified credit card brands. Affected data includes names, expiration dates, addresses, card security codes, credit card numbers, and email addresses. The company provided two years of no-cost identity monitoring services.
- Montana State AGas victim2023-08-25
Thirty One Gifts LLC notified Montana residents that on July 21, 2023, an unauthorized third party captured credit card information entered on its website mythirtyone.com. The company engaged its incident response team, notified law enforcement and card brands, and stopped the access. Affected data includes credit card numbers, expiration dates, security codes, names, addresses, and email addresses. Two years of identity monitoring services are offered.
- Illinois State AGas victim2023-01-01
THIRTY ONE GIFTS, LLC filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-590). The register records the breach as discovered on July 21, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2011-08-09
Thirty-One Gifts reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2011-08-09. 31 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2011-08-08
Thirty-One Gifts, LLC notified NH AG of a missing laptop containing personal info (name, address, bank account) of 27 NH residents and a separate insider incident where an individual misappropriated admin credentials to alter commission payments for 28 consultants. Notifications sent Aug 10, 2011. Kroll engaged for investigation and credit monitoring.