Garden of Life, LLC
ent_bbf7054f5775b0cf
Disclosures
13
State AG · Leak Site · 10 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
43,219
as filed · State AG OR
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Garden of Life, LLC
- Normalized
- garden of life— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- gardenoflife.com
Disclosure history (13)newest first
- ⛰️New Hampshire State AGas victim2025-12-12
Garden of Life, LLC notified the New Hampshire Attorney General of a data breach affecting 4 state residents. An unauthorized third party exploited an unpatched vulnerability in Oracle E-Business Suite between August 9-10, 2025, to access employee and contractor PII (names, SSNs, contact info). The company discovered the incident on November 11, 2025, isolated affected systems, engaged forensic experts, and sent notification letters on December 4, 2025, offering 24 months of identity protection services.
- 🦞Maine State AGas victim2025-12-12
Garden of Life, LLC reported an external system breach (hacking) that occurred on August 9, 2025, and was discovered on November 14, 2025. One Maine resident was affected. The company offered 24 months of identity theft protection services through IDX.
- 🏎️Indiana State AGas victim2025-12-04
Garden of Life LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2025-08-09 and was reported on 2025-12-04. 47 Indiana residents were affected. 2,285 individuals affected in total.
- GLOBALLeak Siteas victim2025-11-13
Garden of Life is a health and wellness company that produces a wide variety of nutritional supplements. The company's product line includes vitamins, probiotics, protein powders and bars, and more, all made using responsibly sourced, non-GMO, and organic ingredients. They focus on offering products that are traceable, pure, and high quality for a healthy lifestyle.
- 🦀Maryland State AGas victim2025-11-13
Garden of Life, LLC notified the Maryland Attorney General of a data incident affecting approximately 788 Maryland residents. Unauthorized access to a third-party payment processing software on the Garden of Life website occurred in July 2024 and was discovered on December 18, 2024. The incident exposed names, addresses, emails, credit/debit card numbers, expiration dates, and CVVs. Garden of Life engaged cybersecurity experts, isolated the affected system, and is sending notification letters to affected residents.
- 🍁Vermont State AGas victim2025-11-04
Garden of Life, LLC notified consumers of a data breach where an unauthorized third party exploited a previously unknown vulnerability in Oracle E-Business Suite to access personal data (names, addresses, SSNs) of employees, contractors, and business partners. The incident occurred in August 2025 and was discovered in November 2025. Garden of Life applied patches, secured systems, and is offering 24 months of identity theft protection services.
- 🦫Oregon State AGas victim2025-01-31
Garden of Life, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2025-01-31. The breach occurred during 7/8/2024 - 12/18/2024. The breach was discovered on 12/18/2024. 43,219 individuals were affected. Notice was sent on 1/17/2024.
- 🌲Washington State AGas victim2025-01-17
Garden of Life, LLC, a business sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2024-12-18 and filed notice on 2025-01-17. 1,082 Washington residents were affected. 30 days elapsed between awareness and notification. 163 days to identify the breach. 0 days to contain the breach.
- ⛰️New Hampshire State AGas victim2025-01-17
Garden of Life, LLC notified the NH Attorney General of a data incident affecting 354 NH residents. Unauthorized access to a third-party payment processing software on its website occurred in July 2024 and was discovered on Dec 18, 2024. Payment card info and consumer PII were accessed. Garden of Life engaged cybersecurity experts, isolated the system, and offered credit monitoring via IDX.
- 🦬Montana State AGas victim2025-01-17
Garden of Life LLC reported a data breach to the Montana Attorney General. The breach was reported on 2025-01-17. The breach occurred from 07/01/2024 to 07/30/2024. 173 Montana residents were affected.
- 🏎️Indiana State AGas victim2025-01-17
Garden of Life LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2024-07-08 and was reported on 2025-01-17. 626 Indiana residents were affected. 43,219 individuals affected in total.
- 🐻California State AGas victim2025-01-17
Garden of Life, LLC notified consumers that an unknown third party gained unauthorized access to its online payment software in July 2024. The company discovered the incident on December 18, 2024. Affected data includes names, addresses, email addresses, credit/debit card numbers, expiration dates, and CVV codes. The software was provided by a third-party vendor. Garden of Life engaged cybersecurity experts, isolated the system, and is offering credit monitoring services.
- 🦞Maine State AGas victim2025-01-17
Garden of Life LLC found on 2024-12-18 that an unknown third party accessed vendor-supplied payment software on its website in July 2024. Exposed data: names, addresses, email, credit/debit card numbers, expiration dates, CVVs. 254 Maine residents among 43,219 total affected. Notifications sent 2025-01-17. IDX 12-month credit monitoring and $1M identity theft insurance offered.