Hello Cake, Inc.
bd_1a1e67285f4e7376 · schema v1 · pii pii-v1
Full breach record for Hello Cake, Inc. →Hello Cake, Inc. disclosed a data breach involving a single file stored in a cloud-based system that had incorrect access settings following a routine migration. An unauthorized third party accessed and copied the file on July 25, 2025. The file contained personal information including full name, potentially date of birth, and prescription-related information (medication name and identifier) for telehealth consultations. No SSN, driver's license, or financial account information was involved. The company corrected the settings, removed the file, and engaged third-party cybersecurity experts.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_2cc023aaa64cfa67Montana State AGfiled 2025-09-19Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-610317
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 19, 2025
- Raw hash
- b2d77a89f645b344390b5515a7c660b117e4d43f6613ef28d0ffa8ff373c560d
Reporting entity
- Name
- Hello Cake, Inc.norm: hello cake
Victim entity
- Name
- Hello Cake, Inc.norm: hello cake
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 19, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Misconfiguration
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.