Hello Cake, Inc.
bd_1a1e67285f4e7376 · schema v1 · pii pii-v1
Full breach record for Hello Cake, Inc. →Hello Cake, Inc. disclosed a data breach involving a single file stored in a cloud-based system that had incorrect access settings following a routine migration. An unauthorized third party accessed and copied the file on July 25, 2025. The file contained personal information including full name, potentially date of birth, and prescription-related information (medication name and identifier) for telehealth consultations. No SSN, driver's license, or financial account information was involved. The company corrected the settings, removed the file, and engaged third-party cybersecurity experts.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 25, 2025
Begins
Sep 19, 2025
Filed
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Montana State AGbd_2cc023aaa64cfa672025-09-19Candidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.