Gap Inc.
ent_38df2050f1dabf3e82e7bc58
Disclosures
4
State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
2
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Gap Inc.
- Normalized
- gap— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- gapinc.com
Disclosure history (4)newest first
- ⛰️New Hampshire State AGas victim2025-12-01
Gap International, Inc. notified the New Hampshire Attorney General of a data security event affecting two New Hampshire residents. On July 22, 2025, a network disruption occurred, leading to unauthorized access to files containing names and Social Security numbers. Gap engaged cybersecurity experts, determined the scope by October 29, 2025, and notified the two affected individuals on November 28, 2025. No evidence of misuse was found. Credit monitoring was provided.
- ⛰️New Hampshire State AGas victim2022-12-08
Gap Inc. reported an insider misuse incident involving one New Hampshire resident. A customer service representative misused a customer's credit card information for two unauthorized transactions totaling $261. The incident was discovered on November 11, 2022, when the customer reported the misuse. The employee was terminated, and the company provided 24 months of credit monitoring to the affected individual.
- ⛰️New Hampshire State AGas victim2010-10-04
State of New Hampshire Attorney General breach notification filed by Gap Inc. on 2010-10-04. The attached PDF document is empty (contains no text content), preventing extraction of breach details, dates, or data types.
- 🌺Hawaii State AGas victim2009-09-28
Gap Inc. reported a data breach to the Hawaii Office of Consumer Protection. The office was notified on 2009/09.28. Breach type: Stolen Laptops, Computers & Equipment. 2,100 Hawaii residents were affected. Recovered from the Internet Archive after the notice was removed from the OCP table.