Primary Domain
Risk and Accountability
Within the Primary Domain facet, Risk and Accountability intelligence groups reporting by primary domain so readers can follow a focused area of internet infrastructure, governance, connectivity markets, or digital capital. The page brings together related articles, public evidence, institutions, companies, people, regional exposure, operating dependencies, and market context that may otherwise sit across separate category pages. It explains the domain, the likely actor class, the market or governance context, and the source material readers should use when comparing signals. Operators, analysts, and governance readers can see how the same domain appears across events, profiles, market shifts, public-source evidence, regional dependencies, and longer-cycle infrastructure decisions over time.

North America Institutional
FAA made NOTAM recovery a public-infrastructure accountability test
FAA is a risk and accountability case because the January 2023 NOTAM outage showed how a legacy safety-information system can become a national continuity risk when data integrity, backup separation, modernization funding, and fallback evidence are not independently visible. The…

North America Institutional
City of Dallas made ransomware recovery a civic-service accountability test
City of Dallas is a risk and accountability case because the May 2023 ransomware incident showed that municipal ransomware harm is measured by continuity of civic functions, not only by whether servers are eventually restored. The public record matters for residents, police…

North America Institutional
Chime made account closure and refund delay a consumer-funds accountability test
Chime is a risk and accountability case because app-based financial access can become a household liquidity problem when fraud controls, account closure decisions, refund timing, partner-bank escalation, and customer evidence intake are not visible enough for consumers whose…

North America Institutional
Air Canada made chatbot refund advice an automation-liability accountability test
Air Canada is a risk and accountability case because a customer-service chatbot became the practical voice of the airline when a passenger relied on automated bereavement-fare refund advice, forcing a public test of whether companies can distance themselves from automated…

Global Cloud Services
Shopify made support access a merchant-data accountability test
Shopify, Inc. is a risk and accountability case because a commerce platform's support console can become a hidden trust boundary for merchants that depend on the platform to hold orders, customer contact details, storefront configuration, fulfilment records, payment workflows…

North America Institutional
Block made Cash App Investing access retention a financial-data accountability test
Block Inc is a risk and accountability case because the Cash App Investing former-employee incident converted an ordinary access-revocation control into a financial-data governance test. The public record matters because Block disclosed that a former employee downloaded reports…

North America Institutional
Kaiser Permanente made tracking pixels a health-data accountability test
Kaiser Permanente is a risk and accountability case because a healthcare site or app can look like ordinary digital service infrastructure while quietly moving patient-context signals through advertising and analytics systems that were not built for clinical confidentiality.

North America Institutional
Quest Diagnostics made AMCA vendor exposure a medical-data accountability test
Quest Diagnostics is a risk and accountability case because a laboratory can outsource billing and collections work, but patients still experience the resulting data exposure as part of the medical-testing relationship that generated the data.

Global Cloud Services
Facebook made Cambridge Analytica a platform-data accountability test
FACEBOOK is a risk and accountability case because the Cambridge Analytica record showed how a social platform's developer permissions, friend-data access, app review, user notice, enforcement promises, and political-data controls could become civic infrastructure questions…

Global Cloud Services
MongoDB made support metadata boundaries a cloud-database accountability test
MongoDB, Inc. is a risk and accountability case because the accountability issue is that customer metadata can drive targeted abuse even when production database content is not exposed, so the provider has to prove the boundary between account context and data-plane compromise.…

Global Cloud Services
JetBrains made TeamCity rebuild evidence a CI/CD accountability test
JetBrains, s. r. o. is a risk and accountability case because the accountability issue is that a build server is not an ordinary web app; once CI/CD control is in doubt, the evidence must cover secrets, artifacts, plugins, runners, and rebuild trust. The public record matters for…

Global Cloud Services
VMware made ESXi patch debt a hypervisor-continuity accountability test
Vmware International Unlimited Company is a risk and accountability case because the accountability issue is that a hypervisor concentrates many services behind one maintenance decision, so patch debt and recovery proof have to be measured as business-continuity controls. The…

Global Cloud Services
ServiceNow made hosted patch transparency a workflow-data accountability test
ServiceNow, Inc. is a risk and accountability case because the accountability issue is that workflow platforms hold operational records for many teams, so patch transparency has to explain which instances were protected, which customers still had duties, and what data paths…

Global Cloud Services
Discord made support-vendor ID handling a trust-and-safety accountability test
Discord Inc. is a risk and accountability case because the accountability issue is that trust-and-safety support often requires sensitive attachments, so vendor access has to be governed as identity stewardship rather than routine customer service. The public record matters for…

Global Cloud Services
Sophos made firewall hotfix telemetry an appliance-trust accountability test
Sophos Technology GmbH is a risk and accountability case because the accountability issue is that a security appliance is trusted to defend other systems, so emergency hotfixing must be paired with evidence about compromise state, credentials, and customer-visible telemetry. The…

Global Cloud Services
SonicWall made SMA credential rotation a remote-access accountability test
SonicWALL, Inc. is a risk and accountability case because the accountability issue is that remote-access appliances sit at the edge of customer networks, so remediation has to include credential rotation and session evidence rather than only software version state. The public…

Global Cloud Services
Juniper made J-Web exposure isolation a firewall-management accountability test
Juniper Networks, Inc. is a risk and accountability case because the accountability issue is that management interfaces are not merely admin conveniences; when exposed, they become control points over infrastructure devices that many downstream services depend on. The public…

Global Institutional
Samsung made device-account notice scope a customer-data accountability test
Samsung is a risk and accountability case because the accountability issue is that device ecosystems combine accounts, support, commerce, and product relationships, so notice scope has to explain which data fields and user groups were actually involved. The public record matters…

Global National Telecom
Deutsche Telekom made CPE firmware recovery a national broadband accountability test
Deutsche Telekom AG is a risk and accountability case because the accountability issue is that consumer routers are part of national telecom continuity, so firmware recovery has to prove more than a central network fix; it has to reach the customer equipment that keeps households…

Global Cloud Services
SolarWinds made detection delay the missing edge of supply-chain accountability
The SolarWinds record is usually remembered as a signed-update compromise, but its harder accountability lesson is temporal: a trusted software factory was altered, customers were exposed, the public learned of the risk only after a third-party victim found it, and later repair…
