1

Rossmann Mobile App Data Breach - Viewing Other Customer Orders

Alperen
October 3, 2025 12:07 AM41

On October 2, I logged into the Rossmann mobile application. A pop-up appeared inviting me to join a campaign. When I clicked to participate, a profile page belonging to an unknown individual appeared, displaying their contact information and order details. I do not know this person, and the account shown was completely unrelated to me. When I clicked on my own profile, I saw that my account was still active. However, when I returned to the main screen and clicked on the campaign participation pop-up again, I was once more directed to the same profile, where I could view this other person’s account and order information. This indicates that the Rossmann application does not properly safeguard user data, as it allows personal information of one customer to be displayed to another. This is a very serious violation of data protection and poses a significant risk to user security. I would also like to note that this was my first time using the Rossmann app, earlier this week. After receiving my orders, I intend to delete all my account information and previously entered data, then uninstall the application from my device. Due to this incident, I will not be using the application for future purchases. Although I am aware that Rossmann may continue to store membership and account data even after account deletion, I sincerely hope that this information will be stored in a secure and confidential manner. For reference, I was using the latest version of the application on my iPad device. I kindly request that this matter be investigated urgently, that the necessary technical and administrative measures be taken, and that I receive an official response regarding this serious breach.

October 10, 2025 12:33 PM (7 days after complaint)

Hello Mr. Alperen, We hope that we have completed your process regarding the issue and reached a resolution during our meeting with you on 10.10.2025. We would like to state that you can always share your experiences with Rossmann with us. Kind regards.

Alperen
Alperen
October 10, 2025 2:51 PM

They openly admit that they cannot protect personal data. You may have protected other people's financial information, but you have leaked people's order histories, identity information, phone numbers, and addresses to hundreds of people. The statement made after this terrible personal data breach seemed ridiculous to me. Although the people who contacted me about this issue tried to be explanatory and helpful, the company seems extremely unreliable to me right now.

Comments

Similar Complaints

mSpy Charged My Card Without Consent After I Dismissed a Feature Pop-Up

Gönül
Gönül
MSPY
May 15, 2025 9:56 AM207

I’ve been using mSpy for quite a while without any major issues—until now. Yesterday, when I logged into the app, a pop-...

1

WhatsApp Security Failure Led to Account Theft and Privacy Violation

Yakup
October 17, 2025 10:22 AM315

On October 17, 2025, at 01:29 a.m., I received a message on my phone stating, “An account belonging to you (WhatsApp) is...

My Telegram Account Was Hacked - I Cannot Log In

Orkun
August 1, 2025 1:08 PM110

On August 1st, 2025, I was unable to log into my Telegram account using my phone number. Despite not sharing the verific...

Video Complaints

Free Fire Max Hacked Account Recovery Issue

Free Fire Max HackedAccount Recovery Issue

Profile photo
Samim
Regarding the Blocked Account Of the Pocket Option Refund Initial Amount

Regarding the BlockedAccount Of the Pocket Option Refund Initial Amount

Profile photo
Wasu
BDG Deposit Delay Complaint

BDG Deposit DelayComplaint

Profile photo
Gagan
Please unban my Free Fire Max account ID, Garena.

Please unban my FreeFire Max account ID, Garena.

Profile photo
Royal
Sidra Chain Verification Error Recovery Issue

Sidra ChainVerification Error Recovery Issue

Profile photo
Zainab