Website activity leaked: what it means and what to do

Risk level: medium. Can you change it: no. Found in 77 breaches in this directory.

What this data is

Records of your actions on a website or app, such as pages viewed, searches, clicks, downloads, logins, cart activity, IP addresses and timestamps.

The risk on its own

Activity logs can reveal far more than a profile. Searches and page views may show health concerns, financial problems, sexual interests, job searches or legal issues. Timestamps and IP addresses can also reveal routines and approximate location.

The risk combined with other data

With your name or email address, website activity becomes a detailed behavioural profile. It can be used for extortion, targeted scams, discrimination or embarrassment. Security logs may also show which devices and locations you normally use, helping attackers mimic them.

How criminals use it

  • Searches for medical or adult content are used to extort you.
  • A phishing email mentions a product you recently viewed and asks you to complete payment.
  • Login times and IP addresses reveal when you are usually home or at work.
  • Job search activity is exposed to your current employer.

What to do now

  1. Ask the company what activity data was exposed and whether IP addresses or searches were included.
  2. Clear account history and turn off personalised tracking where the service allows it.
  3. Use private browsing and a separate email for sensitive research or accounts.
  4. Do not pay extortion demands based on browsing activity. Save the message and report it.
  5. Review ad and tracking settings in Google, Meta and your browser.

Frequently asked questions

Can a website breach reveal my browsing history?

It can reveal activity on that website, including searches and pages viewed, but not your whole browser history unless tracking data was shared.

Does private browsing stop this?

It helps avoid saved history on your device, but websites can still record activity while you are logged in.

Should I be worried about IP addresses in activity logs?

They can show approximate location and network. The risk is higher if combined with your name and address.

Breaches that exposed this data

  • piZap: 2017-12-07, 42M accounts, Email addresses, Genders, Geographic locations, Names, Passwords, Social media profiles
  • Fling: 2011-03-10, 41M accounts, Dates of birth, Email addresses, Genders, Geographic locations, IP addresses, Passwords
  • Last.fm: 2012-03-22, 37M accounts, Email addresses, Passwords, Usernames, Website activity
  • Ashley Madison: 2015-07-19, 31M accounts, Dates of birth, Email addresses, Ethnicities, Genders, Names, Passwords
  • Mate1.com: 2016-02-29, 27M accounts, Astrological signs, Dates of birth, Drinking habits, Drug habits, Education levels, Email addresses
  • QIP: 2011-06-01, 26M accounts, Email addresses, Passwords, Usernames, Website activity
  • Civil Online: 2011-07-10, 7.8M accounts, Email addresses, IP addresses, Passwords, Usernames, Website activity
  • BlankMediaGames: 2018-12-28, 7.6M accounts, Browser user agent details, Email addresses, IP addresses, Passwords, Purchases, Usernames
  • xat: 2015-11-04, 6.0M accounts, Email addresses, IP addresses, Passwords, Usernames, Website activity
  • Leet: 2016-09-10, 5.1M accounts, Email addresses, IP addresses, Passwords, Usernames, Website activity
  • QuinStreet: 2015-12-14, 4.9M accounts, Dates of birth, Email addresses, IP addresses, Passwords, Usernames, Website activity
  • VTech: 2015-11-13, 4.8M accounts, Dates of birth, Email addresses, Family members' names, Genders, IP addresses, Names

Tools that help

Related guides

Breach data sourced from Have I Been Pwned, used under CC BY 4.0. Additional breach metadata provided by XposedOrNot. DataExposed is an independent service and is not affiliated with or endorsed by either.