Menu
Blog Banner Image

The Franchise Memorandum

Court Finds FTC Sufficiently Alleged That Franchisor and Other Defendants Operated as a Common Enterprise in Data Breach Case
Posted in Internet

In another recent decision a federal court in New Jersey denied the motion of Wyndham Worldwide Corporation, Wyndham Hotel Group, LLC, and Wyndham Hotel Management, Inc. (collectively, the "Wyndham Entities") to dismiss the complaint brought by the FTC for unfair or deceptive acts or practices based on breaches of the property management computer system used by the Wyndham franchisor and its franchisees. FTC v. Wyndham Worldwide Corp., 2014 U.S. Dist. LEXIS 84913 (D.N.J. June 23, 2014). The FTC alleged that franchisor Wyndham Hotels and Resorts, along with its affiliates, engaged in (1) deceptive practices by misrepresenting that it used "industry standard practices" and "commercially reasonable efforts" to secure the data it collected from guests, and (2) unfair practices by failing to protect customer data based on data security breaches that occurred between 2008 and 2010. Wyndham Hotels and Resorts filed a separate motion to dismiss, which the court denied on April 7, 2014, although it gave Wyndham Hotels and Resorts leave to file an interlocutory appeal of the decision. (We reported on this decision in Issue 180 of The GPMemorandum.) The Wyndham Entities also filed a motion to dismiss the FTC's complaint arguing that, among other things, they cannot be held liable for Wyndham Hotels and Resorts' violations under a common-enterprise theory.

After considering the variety of factors alleged by the FTC, the court found that the FTC pleaded sufficient facts to reasonably infer a common-enterprise claim based on the lack of distinction between the defendants. Specifically, the FTC asserted that the defendants conducted business practices "through an interrelated network of companies that have common ownership, business functions, employees and office locations." The FTC additionally alleged that during certain time periods, Wyndham Worldwide and Wyndham Hotel Group had responsibility for Wyndham Hotels and Resorts' information security program. In response, the Wyndham Entities argued that they are engaged in legitimate and separate business endeavors, and that common-enterprise liability is appropriate only when separate corporations "are so interrelated that no real distinction exists between them." Noting that the Wyndham Entities' arguments only attacked the merits of the FTC's claim rather than the sufficiency of its pleadings, the court denied their motion to dismiss.

Email LinkedIn Twitter Facebook

The information contained in this post is provided to alert you to legal developments and should not be considered legal advice. It is not intended to and does not create an attorney-client relationship. Specific questions about how this information affects your particular situation should be addressed to one of the individuals listed. No representations or warranties are made with respect to this information, including, without limitation, as to its completeness, timeliness, or accuracy, and Lathrop GPM shall not be liable for any decision made in connection with the information. The choice of a lawyer is an important decision and should not be based solely on advertisements.

About this Publication

The Franchise Memorandum is a collection of postings on summaries of recent legal developments of interest to franchisors brought to you by Lathrop GPM LLP. 

To subscribe to monthly emails for The Franchise Memorandum, please click here

Topics

Archives

2024

2023

2022

2021

2020

2019

2018

2017

2016

2015

2014

2013

2012

2011

2010

2009

2008

Blog Authors