Squishable.com, Inc.
ent_c4a0418c1c93e780b413b360
Disclosures
9
State AG · 9 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
15,961
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Squishable.com, Inc.
- Normalized
- squishablecom— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- squishable.com
Disclosure history (9)newest first
- Montana State AGas victim2023-03-06
Squishable.com, Inc. notified customers of a data breach where unauthorized code on its checkout page allowed a third party to capture personal and payment information between May 26 and October 12, 2022. The company engaged forensic investigators, notified law enforcement, and updated its infrastructure.
- New Hampshire State AGas victim2023-03-06
Squishable.com, Inc. notified the New Hampshire Attorney General of a data security incident affecting 121 NH residents. Unauthorized code on the checkout page allowed a third party to capture customer names, addresses, payment card info, and emails for purchases made between May 26 and October 12, 2022. Squishable removed the code and engaged forensic investigators.
- Maine State AGas victim2023-03-06
Squishable.com, Inc. reported an external system breach (hacking) occurring on May 26, 2022, discovered on December 19, 2022. The incident compromised names and financial account/credit card numbers (with security codes/PINs) for 15,961 individuals, including 75 Maine residents. Written notification was sent on March 2, 2023. No identity theft protection services were offered.
- California State AGas victim2023-03-06
Squishable.com, Inc. disclosed a data breach where unauthorized code on its checkout page allowed a third party to capture customer information (name, address, payment card info, email) between May 26 and October 12, 2022. The incident was discovered on October 12, 2022. The company removed the code, engaged forensic investigators, notified law enforcement, and updated website infrastructure.
- Massachusetts State AGas victim2023-03-06
Squishable.com, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-03-06. 479 Massachusetts residents were affected. The report records the breach type as electronic.
- Washington State AGas victim2023-03-02
Squishable.com, Inc. reported a cybersecurity incident where unauthorized code on its checkout page allowed a third party to capture customer PII and payment data between May 26 and October 12, 2022. The breach was discovered on October 12, 2022. 671 Washington residents were affected. Response included forensic investigation, law enforcement notification, and infrastructure updates.
- Vermont State AGas victim2023-03-02
Squishable.com, Inc. notified consumers of a data breach where unauthorized code on its checkout page allowed a third party to capture customer information, including names, addresses, payment card details, and email addresses, between May 26 and October 12, 2022. The company engaged forensic investigators, notified law enforcement, and updated its infrastructure.
- Indiana State AGas victim2023-03-02
Squishable.com Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-05-26 and was reported on 2023-03-02. 272 Indiana residents were affected. 15,961 individuals affected in total.
- Illinois State AGas victim2023-01-01
SQUISHABLE.COM, INC (SQUISABLE) filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-042). The register records the breach as discovered on May 26, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.