Confirmed breach. discovered Sep 3, 2025 — the first regulatory filing landed 114 days later (flagged late). 3 individuals reported across the linked filings.
Dan Clasby Company, CPAS notified Vermont AG on 2025-12-26 of a data security incident discovered on 2025-09-03. Unauthorized access to certain files containing personal information (name and variable data elements) occurred. The firm engaged cybersecurity experts, reviewed affected files, and is offering 12-24 months of TransUnion identity protection services.
VT AG >45 bday
⛰️New Hampshire State AGMost recentlinked via multistate filing link · 100%
Dan Clasby Company, CPAS reported a data security incident to the New Hampshire Attorney General on December 29, 2025. The company discovered a network disruption on September 3, 2025, leading to unauthorized access to files containing names and Social Security numbers of 3 New Hampshire residents. Notifications were sent on December 26, 2025, offering complimentary identity monitoring services.
Affected (this filing): 3
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.