Questo, Inc.
ent_5d4862915a2822f654dd2a76
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
354
as filed · State AG TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Questo, Inc.
- Normalized
- questo— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🍁Vermont State AGas victim2026-07-22
Questo, Inc. reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-07-22. The reporting organization type is Other Commercial. 27 Vermont residents were affected. Categories of data breached: Social Security Numbers, Financial Account Codes, Credit and Debit Account Info.
- ⭐Texas State AGas victim2026-07-17
Questo, Inc. based in Augusta, Georgia, a business – retail or merchant entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-06-22 and reported on 2026-07-17. 354 Texas residents were affected. 11,950 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information. Consumers were notified via Notice by publication in print media;Posted at company website or special website;U.S. Mail;Email.
- 🐻California State AGas victim2026-07-16
Questo, Inc. detected unusual network activity on October 9, 2025. An investigation revealed unauthorized access to certain files between October 1 and October 9, 2025. The company secured its network and engaged outside cybersecurity professionals. Identity monitoring services were provided via Kroll. The incident affected residents in multiple states, including California and Rhode Island.
- 🏛️Massachusetts State AGas victim2026-07-01
Questo, Inc. disclosed a security incident occurring between October 1 and October 9, 2025, where an unauthorized actor accessed files containing personal information. The breach was detected and reported on June 22, 2026. Questo engaged outside cybersecurity professionals, secured its network, and is offering 24 months of identity monitoring via Kroll to affected individuals. No evidence of identity theft was found.