That might well be sheer coincidence. Or it might be that they had never bothered to audit 3P access to user data before and scrambled when CA broke. All I’m saying is that based on their prior behaviour, I know which one I see as most likely. It’s just Bayesian, if you will.