
A PBS affiliate lost 50TB of archival material after its storage vendor shut down. The case reveals why CFOs need a new metric: time to exit a failed vendor.
Alpha Score of 48 reflects weak overall profile with strong momentum, weak value, weak quality. Based on 3 of 4 signals — score is capped at 90 until remaining data ingests.
A PBS affiliate in St. Louis lost access to roughly 50 terabytes of archival material after its storage vendor ceased operating. The affiliate, Nine PBS, had contracted with Open Source Storage, which housed the data at an Iron Mountain data center in Colorado. The contract ran through March 2026. Open Source Storage shut down. Nine PBS could not renew access normally and eventually sued Iron Mountain to try to recover the archive.
The episode exposes a risk that finance teams rarely measure. Companies spend most of their vendor management effort on uptime and cybersecurity. When a provider fails outright, the question becomes whether the data can be retrieved and migrated without the vendor's cooperation. Exit risk becomes a financial exposure, not just a technology architecture question.
The vendor selling the service may not be the company controlling the infrastructure beneath it. Nine PBS contracted with Open Source Storage. Open Source Storage used Iron Mountain's infrastructure. The contract had been scheduled to run through March 2026. The storage provider shut down and the broadcaster could not renew access normally.
This pattern is common in enterprise technology. A company can have contracts with dozens of SaaS providers that ultimately depend on the same handful of cloud, identity, database and storage providers. Vendor diversification on paper can conceal concentration underneath.
Finance teams tend to measure supplier exposure through spend and creditworthiness. Technology teams measure it through uptime and recovery objectives. Neither metric fully answers the question that matters when a provider fails: who has the ability to return the company's data?
A more revealing number than an uptime guarantee of 99.99% is the metric of "time to exit." If a mission-critical provider ceased operating on Friday afternoon, how many hours or days would it take to retrieve the information, move it elsewhere and resume business without the vendor's help?
Instead of measuring vendor concentration solely by dollars spent, finance can measure business value stranded by vendor. A relatively inexpensive platform might hold records essential to billing and customer operations. Its annual contract value could be trivial while its operational replacement value is enormous.
Software procurement shifted technology from something companies owned to something they rent. Spending moved from capital budgets to operating expenses. Control of critical assets transferred into complicated chains of counterparties.
A PYMNTS Intelligence report on vendor vulnerabilities found that hackers often target middle-market firms. Those companies depend on third-party cloud and SaaS providers, which can leave them exposed.
The first two phases of enterprise cloud management asked whether data was secure and whether applications remained available. The next may determine whether corporate assets remain portable when contractual relationships fail.
The question of who bears liability when a vendor fails is explored in AI Rogue Agents: Who Bears Liability for Breaches.
Nine PBS's lawsuit against Iron Mountain is ongoing.
Drafted by a large language model from the source reporting linked above, then screened by automated publishing checks. It is not read by a journalist before publication. Some articles cite our Alpha Score. Verify prices and figures against the original source. Educational coverage, not personalized advice.