avenvale.Breach library
Historical report · 2018English edition

MyFitnessPal 2018 breach: what to do next

Start here

Break password reuse

Replace any password carried over from this account and protect the email used for recovery. Consult the original account notice for the data fields attributed to you.

Read the action guide

What was reported

HIBP dates this MyFitnessPal breach to 2018 and lists email addresses, usernames, IP addresses and password hashes. The source describes wider circulation of the data in 2019.

Email addressesIP addressesPasswordsUsernames

Selected reported fields. This is not confirmation that your information was involved.

What matters here

This report lists account credentials, not a complete health record. Do not infer that meals, workouts or medical details were exposed from the service name alone.

Understand the informationEmail or password exposed?

Related reports

Sources & context

Report metadata: Have I Been Pwned · CC BY 4.0. Avenvale provides the explanation and suggested response.

By Avenvale · Published · Updated

Public information, not a personal exposure check. A historical record does not establish current account access or a completed removal.