KandyPens, Inc.
ent_c51ba5424f7ec3c4e53d12a5
Disclosures
3
State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
39,457
as filed · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- KandyPens, Inc.
- Normalized
- kandypens— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- 🐻California State AGas victim2020-04-20
KandyPens, Inc. disclosed a data security incident affecting its online payment platform. Unauthorized access occurred between March 7, 2019, and February 13, 2020, compromising customer names and credit/debit card details (including CVV). The company engaged forensic experts, fixed the vulnerability, and enhanced monitoring. Notifications were sent to affected individuals across multiple US states.
- 🦫Oregon State AGas victim2020-04-20
KandyPens, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2020-04-20. The breach occurred during 3/7/2019 - 2/13/2020. The breach was discovered on 2/12/2020. 39,457 individuals were affected. Notice was sent on 4/20/2020.
- 🦬Montana State AGas victim2020-04-20
KandyPens, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2020-04-20. The breach occurred from 3/7/2019 to 2/13/2020. 142 Montana residents were affected.