Clustered 4 filings across 4 jurisdictions · filed Jul 26, 2023. View entity profile → Other incidents for this victim →
incident inc_713c3be53dc5406a · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
CA ME VT WA
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
Nov 24, 2021 → Dec 14, 2022
When the intrusion reportedly occurred, per the linked filings
Jun 8, 2023
Reported by WASHINGTON AG, CALIFORNIA AG, VERMONT AG, MAINE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
HRM Enterprises, Inc., a business sector entity reported a unclear/unknown incident to the Washington Attorney General. The organization became aware of the incident on 2023-06-08 and filed notice on 2023-07-26. 1,414 Washington residents were affected. 48 days elapsed between awareness and notification. 561 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 1,414
HRM Enterprises, Inc. notified customers that its e-commerce provider, CommerceV3, suffered an unauthorized access incident between Nov 24, 2021, and Dec 14, 2022. Payment card information (name, card number, CVV, expiration, billing address, email) was potentially accessed. HRM was notified on June 8, 2023. The company is reviewing vendor requirements and policies.
HRM Enterprises, Inc. notified consumers that its e-commerce platform provider, CommerceV3, experienced a data breach. An unauthorized actor accessed CommerceV3 systems between November 2021 and December 2022, potentially exposing payment card information, names, email addresses, billing addresses, CVV codes, and expiration dates for customers who made purchases during that period. HRM Enterprises updated vendor requirements and reassessed vendor relationships in response.
HRM Enterprises, Inc. reported a vendor network breach affecting 43,092 individuals, including 554 Maine residents. The incident occurred between November 24, 2021, and December 14, 2022, and was discovered in June/July 2023. The breach involved the acquisition of names and financial account or credit/debit card numbers (with security codes/PINs). Written notification was sent on July 26, 2023. No identity theft protection services were offered.
Affected (this filing): 43,092