AmeriCommerce by Cart.com
ent_2b50aa849aa73ecae2b056d7
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,581
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- AmeriCommerce by Cart.com
- Normalized
- americommerce by cartcom— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Massachusetts State AGas victim2021-04-23
AmeriCommerce by Cart.com reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-04-23. 99 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2021-04-23
AmeriCommerce by Cart.com reported an external system breach that occurred on March 25, 2021. The breach was discovered on March 29, 2021, and affected 28 Maine residents. The compromised information included names along with financial account or credit/debit card numbers combined with their security codes or PINs.
- Montana State AGas victim2021-04-23
AmeriCommerce identified a security incident on March 29, 2021, involving unauthorized code added to merchant checkout pages via the file upload feature starting March 25, 2021. The code captured payment card details, names, addresses, and emails. AmeriCommerce notified law enforcement and payment card networks.
- Indiana State AGas victim2021-04-23
AmeriCommerce by Cart.com reported a data breach to the Indiana Attorney General. The breach occurred on 2021-03-25 and was reported on 2021-04-23. 71 Indiana residents were affected. 3,581 individuals affected in total.
- New Hampshire State AGas victim2021-04-23
AmeriCommerce by Cart.com notified the New Hampshire Attorney General of a security incident affecting 30 NH residents. Unauthorized code was added to merchant checkout pages between March 25 and March 29, 2021, capturing customer payment card data (numbers, CVV, expiration) and PII. The code was removed, law enforcement was notified, and notification letters were mailed starting April 23, 2021.