City Harvest, Inc.
ent_f3212b8cea0d67b5e324ff1f
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
23,782
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- City Harvest, Inc.
- Normalized
- city harvest— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- New Hampshire State AGas victim2022-07-11
City Harvest, Inc. notified the New Hampshire AG of a data event affecting 27 NH residents. Unauthorized access occurred Jan 19-29, 2022; discovered Jan 20, 2022. Impacted data: names and financial account info. FBI notified; credit monitoring offered.
- Maine State AGas victim2022-07-08
City Harvest, Inc., a non-profit organization, reported a data breach that affected 32 Maine residents. The breach, described as an external system hack, occurred between January 19, 2022, and January 29, 2022, and was discovered on June 10, 2022. The compromised information included names combined with financial account or credit/debit card numbers along with associated security codes or PINs. Affected individuals were notified on July 8, 2022, and offered 24 months of identity theft protection services.
- Massachusetts State AGas victim2022-07-08
City Harvest, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-07-08. 212 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2022-07-08
City Harvest, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-01-19 and was reported on 2022-07-08. 18 Indiana residents were affected. 23,782 individuals affected in total.
- Montana State AGas victim2022-07-08
City Harvest, Inc. notified individuals of an unauthorized access incident occurring between Jan 19-29, 2022, detected on Jan 20, 2022. The actor accessed systems and exfiltrated files containing names and other personal info. The company engaged forensic specialists, contained the breach, and offered 24 months of credit monitoring. No evidence of fraud was found.