Unverified claim — June 5, 2026: A threat actor using the alias macaroni advertised a free leak of alleged Tradeify customer CRM data: 240,174 profiles pulled through an exposed Klaviyo API key, per Dark Web Informer. Tradeify has not publicly confirmed the dump at indexing time.
What was allegedly exposed
- Full names and email addresses
- Phone numbers and mailing addresses (city, state, zip, country)
- Limited purchase history and Klaviyo profile metadata
Tradeify runs funded-trader evaluation programs—so victims are disproportionately people active in retail prop trading, a community already targeted by payout-scam Telegram channels.
Why treat this as unverified
The poster gated full files behind forum replies; public reporting used redacted samples only. The actor also claimed the API key remained active, which would imply ongoing exposure if true—but that has not been independently verified. Forum dumps are often repackaged old marketing lists.
Action items for Tradeify users
- Rotate passwords on Tradeify and any email reused for signup; enable MFA.
- Ignore "payout failed" or "KYC verify" emails referencing Tradeify until the company posts official guidance.
- Do not download alleged leak archives from forums—they frequently contain malware.
Canonical record: Tradeify Klaviyo CRM claim (unverified).