[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2g0r3oyq869lx":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"publishedAt":12,"modifiedDate":13,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":19,"affectedCount":19,"affectedCountStatus":20,"affectedCountLowerBound":19,"affectedCountUnit":21,"hasEnglishDescription":4,"contentLocale":22,"availableLocales":23,"translations":25,"severity":28,"dataClasses":29,"description":35,"seoTitle":36,"seoDescription":37,"logoUrl":38,"isVerified":39,"isSensitive":4,"isSpamList":39,"isMalware":39,"company":40},"4d0e12b0aca62240a53a8c66","GratisKläder","GratisKläder 2012 Data Breach Claim","gratisklader-se-2012","gratisklader.se","2012-01-01T00:00:00.000Z","2026-08-31T05:40:15.132Z","2026-09-17T19:39:24.081Z","2026-09-17T16:54:02.348Z","Sealed third-party CSV archive and independent secondary breach catalog","https:\u002F\u002Fbreachera.com\u002F",[16,18],"https:\u002F\u002Fweb.archive.org\u002Fcdx\u002Fsearch\u002Fcdx?url=gratisklader.se&from=2012&to=2012&output=json",201478,"lower_bound","email_identifiers","en",[22,24],"tr",{"en":26,"tr":27},{"slug":9},{"slug":9},"High",[30,31,32,33,34],"Email addresses","Names","Physical addresses","Usernames","Passwords","\u003Cp>This entry cautiously documents a 2012 dataset claim associated with \u003Ccode>gratisklader.se\u003C\u002Fcode>. The current BreachEra directory places the name “GratisKläder,” the same domain, the year 2012, a claim of 203,320 records, and the data classes e-mail addresses, full names, physical addresses, usernames, and passwords in one catalog row. No exact GratisKläder or GratisGodis entry was found in the public public breach source catalog. Internet Archive CDX metadata confirms that gratisklader.se was an active web property during 2012, but that evidence establishes entity context only and does not independently prove an incident. No operator statement, regulatory notice, or primary source confirming an exact incident day was identified. The entry is therefore published as an unverified third-party claim, with \u003Ccode>isVerified\u003C\u002Fcode> kept false.\u003C\u002Fp>\n\u003Cp>The date is retained at year precision only. BreachEra supports 2012 but provides no month or day. The database value 1 January 2012 is solely a technical representation of the year; it does not claim that access, collection, or publication occurred on that day. The source CSV member has a 2017 filesystem timestamp, and that timestamp was not promoted to an incident date. \u003Ccode>breachDatePrecision\u003C\u002Fcode> is consequently \u003Ccode>year\u003C\u002Fcode>. Any stronger primary evidence should trigger a separate review of the date, identity, and scope. This entry does not state that the operator authenticated the archive or that the method by which it was obtained is known.\u003C\u002Fp>\n\u003Cp>The reviewed source is a complete 18,913,337-byte 7z archive. Its SHA-256 identity is sealed as \u003Ccode>27dfd0…38e1\u003C\u002Fcode>, and a full 7z integrity test passed. The archive contains seven regular members totaling 61,736,107 decompressed bytes and no nested archive. The member selected for GratisKläder is the 29,612,327-byte \u003Ccode>gratisklader.se.csv\u003C\u002Fcode> file. It has a source-authored nine-column header covering address, e-mail, first name, last name, password, salt, postal address, postal code, and username. The CSV has 203,321 physical lines including the header. Ten blank physical data lines are ignored as records by the strict parser, leaving 203,310 logical data records after the header. Every logical record has nine columns, and two independent parsers found no syntax error or width mismatch.\u003C\u002Fp>\n\u003Cp>The BreachEra figure of 203,320 exactly matches the physical non-header line count when blank lines are included, but it does not match the 203,310 logical records or the 201,478 unique canonical e-mail addresses. This alignment is useful evidence binding the public catalog claim to the reviewed file scope, yet it is not evidence of a unique-person count. The catalog figure was therefore not written to \u003Ccode>pwnCount\u003C\u002Fcode>, no field selection was expanded to fit it, and blank lines were not reinterpreted as user records. \u003Ccode>totalRecords\u003C\u002Fcode> separately preserves the 203,310 logical records, while \u003Ccode>sourcePhysicalRecordCount\u003C\u002Fcode> preserves the 203,320 physical lines after the header.\u003C\u002Fp>\n\u003Cp>E-mail mapping relies only on the explicitly named \u003Ccode>email\u003C\u002Fcode> column. That column contains 202,350 valid e-mail occurrences, 960 invalid non-blank values, and no blank value. Removing 872 repeated occurrences leaves 201,478 sorted unique canonical addresses. Another 313 whole-cell values in the address, first-name, last-name, and postal-address columns happen to resemble e-mail addresses; they were deliberately excluded because those columns do not carry e-mail semantics. No password, salt, username, free text, or arbitrary at-sign-bearing field was mined for additional values. Two independently compiled Go tools agree on all 203,310 records, per-field aggregates, the 202,350-occurrence stream, and the same 201,478-line canonical set. The final private file is 4,679,907 bytes with SHA-256 \u003Ccode>fd3ea9…6087\u003C\u002Fcode>.\u003C\u002Fp>\n\u003Cp>The same archive also contains five members explicitly labelled \u003Ccode>gratisgodis\u003C\u002Fcode> or \u003Ccode>GratisGodis.se\u003C\u002Fcode>, totaling 32,123,339 bytes. Those members were not merged into the GratisKläder event. The broadest GratisGodis representations overlap heavily with one another but have only limited overlap with the explicit GratisKläder e-mail column, reinforcing the need to treat the identities separately. Because no public incident date or independent incident record was found for GratisGodis, those members are deferred under \u003Ccode>SEPARATE_ENTITY_EVENT_BINDING_UNRESOLVED\u003C\u002Fcode>. No GratisGodis address enters this breach or this import. The generic \u003Ccode>Breached_Info\u003C\u002Fcode> member is closed as \u003Ccode>NO_EMAIL_FIELD\u003C\u002Fcode>. Mapping coverage is therefore honestly marked \u003Ccode>PARTIAL\u003C\u002Fcode>; it does not claim that every text fragment in the archive or the complete historical event has been verified.\u003C\u002Fp>\n\u003Cp>\u003Ccode>canonicalEmailCount\u003C\u002Fcode> and \u003Ccode>affectedCountLowerBound\u003C\u002Fcode> refer only to the 201,478 unique addresses verified in the selected explicit e-mail column. They are not a unique affected-person count: one person may use several addresses, an address may be shared, some addresses may no longer be active, and the archive may not be a complete copy of the claimed event. LeakData writes only e-mail associations; names, physical addresses, passwords, salts, postal codes, and usernames are not imported. A match alone does not prove that an address owner used GratisKläder, had an active account in 2012, or that another source field is accurate or current. Anyone who reused an old password on another service should choose a unique password for every account, enable multi-factor authentication where available, and independently verify unexpected messages referring to old promotions or account details.\u003C\u002Fp>","GratisKläder 2012 Data Breach Claim (At Least 201,478 Email Identifiers)","Review the 201,478 unique addresses verified only from the explicit e-mail column in the 2012 dataset associated with GratisKläder.","\u002Fuploads\u002Flogo\u002Fgratisklader_se.webp",false,{"name":7,"sector":41,"country":42,"website":43,"websiteArchiveUrl":42,"websiteStatus":42,"websiteCheckedAt":44},"Unknown","","https:\u002F\u002Fgratisklader.se",null]