> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Tradeify Data Breach: Hacker Claims to Leak 240K+ Customer Records
- URL: https://darkwebinformer.com/tradeify-data-breach-hacker-claims-to-leak-240k-customer-records/
- Published: 2026-06-05T17:06:26.000Z
- Updated: 2026-06-05T18:37:15.000Z
- Author: Dark Web Informer
- Tags: Data Breaches

Breach Report ![United States flag](https://flagcdn.com/w40/us.png)United States Finance 

## Tradeify Data Breach: Hacker Claims to Leak 240K+ Customer Records

A threat actor using the alias **macaroni** claims to have exfiltrated the full customer CRM of **Tradeify**, an online trading platform, by abusing a **Klaviyo private API key that was reportedly hardcoded in the site's client-side JavaScript**. The post advertises **240,174 unique customer profiles**, including full names, emails, phone numbers, physical addresses, and limited purchase history, shared behind a reply gate. The claim is **unverified** and Tradeify has not publicly addressed it.

Severity CRITICAL 

Data240K+ profiles

PriceFree leak

Country![United States flag](https://flagcdn.com/w40/us.png)United States

Actormacaroni

### ▣Post details

TargetTradeify (online trading platform)

Country![United States flag](https://flagcdn.com/w40/us.png)United States

SectorFinancial Services / Trading

ClaimFull customer CRM dumped via exposed API key

Data240,174 customer profiles (Klaviyo CRM)

ObservedJun 5, 2026

PriceFree leak (reply-gated)

Actormacaroni (MVP user)

### !Allegedly exposed

- 240,174 customer profiles (claimed)
- Full names
- Email addresses
- Phone numbers
- Physical addresses (city, state, zip, country)
- Purchase history (limited)
- Account metadata / custom properties
- Klaviyo CRM profile data

### ◱Screenshot

[ ![Tradeify alleged data leak Screenshot 1](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2026/06/23876952387948972349872365798235.png) Screenshot 1 Redacted preview ](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2026/06/23876952387948972349872365798235.png) 

### ⚠Potential impact

If genuine, a CRM of **240,000+ customer profiles**, names, emails, phone numbers, physical addresses, and purchase history, would be highly valuable for phishing, fraud, and identity theft, made worse by the fact that the victims are users of a financial and trading service. The poster also claims the exposed API key remained active, which, if true, could allow continued data access or tampering until the credential is rotated. Record counts and authenticity are unconfirmed.

### iStatus

Unverified 

Customer profile samples and a claimed exfiltration method were posted to an underground forum behind a reply gate; the sample records and the API credential referenced in the post are not reproduced here. The claim has **not been independently confirmed** and Tradeify has not publicly addressed it.

Want the non-redacted screenshots? **Paid subscribers** get all of the claim details and unredacted screenshots. Check out the [threat feed](https://darkwebinformer.com/threat-feed/) or [ransomware feed](https://darkwebinformer.com/ransomware-feed/) (whichever applies to this post), then after subscribing, search there for this alert to view the unredacted version. [View pricing →](https://darkwebinformer.com/pricing) 

[DARK WEB INFORMER](https://darkwebinformer.com/) \- THREAT INTELLIGENCE