AccidentalMisconfigurationCustomer Data InvolvedIDENTITY_BASICCREDENTIALSLowContained
MindFuel
bd_31cce346b0f71202 · schema v1 · pii pii-v1
Full breach record for MindFuel →The Mindfuel Foundation disclosed that a snapshot of a historical testing database, potentially containing limited production data (names, emails, phone numbers, usernames, hashed passwords) from before May 2021, was placed in a location accessible to developers by a third-party service provider and may have been viewed by web crawlers on May 5, 2025. The organization removed the data, reset affected passwords, and implemented new secure file transfer and legacy account removal processes.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_7a2696397ac67494Indiana State AGfiled 2025-06-20(3d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-604372
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 23, 2025
- Raw hash
- b90050337b925b0c6fea867c8631ac0fa85bbffb9ae6f9c8c09f04ec32365ba4
Reporting entity
- Name
- MindFuelnorm: mindfuel
- Domain
- mindfuel.ca
Victim entity
- Name
- MindFuelnorm: mindfuel
- Domain
- mindfuel.ca
Incident
- Discovered
- May 5, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Third-Party / Supply Chain
- Third party
- via third-party service provider
Compliance
- Time to disclose
- 7 weeks(49 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.