Roll20 Data Breach History
WebsiteRoll20 is a virtual tabletop for playing tabletop RPGs online.
This page shows all data breaches of Roll20. View the complete breach timeline, records exposed, root causes, and AI breach risk score. BreachHistory tracks disclosed data breaches worldwide.
Data Breach Timeline — All Roll20 Breaches
- 2024 2024 Roll20 — 12M users, compromised admin account 12.0M records Share
- 2019 2019 — Roll20: Roll20 was part of the theft of 127 million records… 4.0M records Share
- 2018 2018 Roll20 — 4M accounts (virtual tabletop) 4.0M records Share
Roll20 Data Breach Summary
This page tracks the Roll20 data breach history and cybersecurity incidents affecting Roll20. BreachHistory currently indexes 3 publicly disclosed or catalogued incidents spanning 2018 through 2024, with approximately 20.0 million records reported as exposed across all indexed events. These totals may include overlapping datasets or third-party estimates and should not be interpreted as unique affected users.
The Roll20 breach timeline includes major data breaches, cyber attacks, data leaks, credential exposures, API abuse, and other security incidents. Each incident provides details on the estimated records exposed, attack method, affected data types, and supporting public sources. Currently, 0 incidents are company-confirmed.
Largest Roll20 Data Breaches
The largest indexed incidents include the 2024 Roll20 — 12M users, compromised admin account, the 2019 — Roll20: Roll20 was part of the theft of 127 million records…, and the 2018 Roll20 — 4M accounts (virtual tabletop). Record counts originating from threat actors or leak sites should be treated as estimates unless confirmed by Roll20 or a regulator. Below is the list of large data breaches:
- 2024 2024 Roll20 — 12M users, compromised admin account — about 12.0M records exposed · Catalogued incident
- 2019 2019 — Roll20: Roll20 was part of the theft of 127 million records… — about 4.0M records exposed · Catalogued incident
- 2018 2018 Roll20 — 4M accounts (virtual tabletop) — about 4.0M records exposed · Catalogued incident
What Information Was Exposed?
Depending on the incident, exposed data may include email addresses, passwords and login credentials, names, physical addresses, payment card and financial account data, and other personal information (PII). The exact data varies between incidents, so review each breach page before assuming your information was affected.
Roll20 Data Breach 2026
At the time of this update, no Roll20 data breach has been catalogued for 2026. New incidents are added as official disclosures, regulatory filings, or credible cybersecurity reports become available.
What To Do If You Were Affected
If you believe your account may have been involved in a Roll20 data breach, change any reused passwords, enable multi-factor authentication (MFA), monitor your account for suspicious activity, and be cautious of phishing emails or fake breach notifications.
This Roll20 breach history is maintained by BreachHistory using public disclosures, regulatory filings, security research, and clearly labelled third-party claims. For the complete breach timeline, records exposed, incident details, and AI Breach Risk Score, explore the sections on this page.