Pennsylvania General Store
ent_81af96c25a5fc4eb966e2bb1
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
19,454
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Pennsylvania General Store
- Normalized
- pennsylvania general store— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Maine State AGas victim2023-10-27
Pennsylvania General Store, a retail entity, reported a data breach affecting 19,454 individuals. The breach was caused by a skimming attack on its third-party e-commerce vendor, CommerceV3, which compromised customer names and payment card information. The incident occurred on November 24, 2021, but was not discovered until June 6, 2023. Affected individuals were notified on September 15, 2023.
- Montana State AGas victim2023-10-27
The Pennsylvania General Store notified customers of a data security incident involving its third-party e-commerce platform, CommerceV3. Unauthorized access occurred between Nov 24, 2021 and Dec 14, 2022, likely via stolen credentials. Impacted data included names, emails, billing addresses, and full payment card details (number, CVV, expiration). The incident was discovered on June 6, 2023. Forensic investigation confirmed the breach; no evidence of misuse was found at the time of notice.
- California State AGas victim2023-10-27
Pennsylvania General Store notified customers of a data security incident involving its third-party e-commerce platform, CommerceV3. The incident occurred between November 24, 2021, and December 14, 2022, but was not discovered until June 6, 2023. Affected data may include names, email addresses, billing addresses, payment card numbers, CVV codes, and expiration dates. Approximately 46 Rhode Island residents were potentially impacted. CommerceV3 conducted a forensic investigation and implemented additional security measures.
- Massachusetts State AGas victim2023-10-27
Pennsylvania General Store reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-10-27. 254 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2023-09-15
Pennsylvania General Store reported a data breach to the Indiana Attorney General. The breach occurred on 2023-11-24 and was reported on 2023-09-15. 118 Indiana residents were affected. 19,454 individuals affected in total.
Supply-chain cascadesreviewed and confirmed
- Pennsylvania General Store’s filing is one of at least 31 in the CommerceV3 supply-chain incident (2023).