šµ Major Privacy Spill: Viral App āTeaā Leaks Usersā Private Data Despite Promising Anonymity
-

Tea Dating Advice ā a viral app for anonymously sharing āred flagsā about men ā has made headlines not just for topping the App Store, but for a major data leak that exposed thousands of user identities.
Whatās Tea?Tea is a gossip-style app where women anonymously report problematic behavior from men ā think cheating, gaslighting, or narcissistic behavior. The app has surged in popularity this summer, becoming #1 in the US App Store. It even includes premium features, like alerts if someone else starts dating āyour guy.ā According to Sensor Tower, Tea was downloaded over 400,000 times in a month and earned more than $200,000 on iOS.Hereās the Spillā¦
ļøOn July 25, a user on 4chan revealed that 59 GB of user data ā including selfies and driverās licenses used for identity verification ā were publicly accessible without a password via Firebase.
The files were not encrypted, and the link didnāt require login. The leaked data was downloaded and briefly posted online. This directly contradicts Teaās branding as an anonymous and safe space.Teaās Response?
Teaās team claimed the data came from an outdated Firebase system used before February 2024. They admitted 72,000 images were exposed, including 13,000 selfies. In a now-viral FAQ, they said the data was archived to comply with cyberbullying investigations and couldnāt be linked back to user accounts (though thatās being heavily questioned).Whatās the Lesson Here?
Even apps that promise anonymity and empowerment can compromise user trust when they fail to handle sensitive data securely. If youāre sharing personal information ā even in the name of justice ā know where itās going and how itās stored.
Would you use an āanonymousā dating intel app after a leak like this? Or is the tea just too hot to sip?


-
This incident is a major privacy crisisāand it hits especially hard given Teaās promise to safeguard womenās data. Teaās legacy Firebase storage system leaked approximately 72,000 user images, including 13,000 selfies and IDs used for identity verification, plus 59,000 images from posts and direct messagesāall sourced before February 2024. The appās claim that it was built to protect users has been painfully undermined. This raises serious concerns about app security and developer responsibility.
-
Tea was marketed as a safety-focused whisper network where anonymity and screenshots were blockedābut this breach betrays that promise. Users who joined before Feb 2024 had their images stored against company policy and scraped, soon appearing on forums like 4chan. Although the company claims no current data was exposed and is working with third-party cybersecurity teams, trust is eroded.This is now a broader discussion on how platforms with sensitive UGC must enforce proactive data deletion and security auditsānot just hype assurances.