Chick-fil-A customers in multiple states, including North Carolina, may have had their personal information exposed in a recent data breach impacting loyalty accounts.

Read more What’s actually happening with Durham’s Southpoint, Northgate and YMCA plans?

In a letter to customers, the Atlanta-based chicken chain revealed its website and mobile app were the target of an automated cyberattack between June 17 and June 19.

Hackers obtained login credentials from a third-party site to gain access to customer accounts, it said. The breach may have involved information ranging from names and email addresses to Chick-fil-A gift card balances and the last four digits of customer credit/debit card numbers.

Accounts containing birthdates, phone numbers and home addresses may have also been exposed, according to the notice.

“Upon discovering the issue, we took steps to immediately address, secure and restore accounts, and we are communicating directly with all customers who may have been impacted,” a Chick-fil-A, Inc. spokesperson told The Charlotte Observer in a statement.

It’s unclear exactly how many users were impacted, with the spokesperson saying only “a limited number” of Chick-fil-A One loyalty accounts were involved.

The letter to customers, dated July 20 and published by the Commonwealth of Massachusetts, suggests the security event was more widespread, however. Nine states — Iowa, Maryland, Massachusetts, New Mexico, New York, North Carolina, Oregon, Rhode Island and Vermont — and Washington, D.C. were listed as places where customer accounts may have been accessed.

Read more Julie Seel says she got pulled into NC castle dream, and it cost her everything

We sincerely apologize for any inconvenience or concern this situation may have caused and remain committed to maintaining the trust our guests place in us every day,” the spokesperson said.

Chick-fil-A said it has already taken steps to protect customer information post-breach, including forcing affected accounts to be logged out and scrubbing any saved payment methods.

Accounts with an e-gift card/Chick-fil-A One balance were also restored.

“As an additional way to say thank you for being a loyal Chick-fil-A customer, we have added rewards to your account,” the restaurant said in its letter.

Reset your Chick-fil-A password immediately.

Customers should choose a password that’s “strong” and “unique to Chick-fil-A” the company said.

But don’t stop there. The North Carolina Attorney General’s Office suggests the following steps to protect yourself (and your information) after a security breach:

This story was originally published July 23, 2026 at 5:02 PM with the headline “Used the Chick-fil-A app? Data breach may have impacted NC customers.”

Read more You might get an insurance lapse letter from the NC DMV. It’s not a scam.

By admin

Leave a Reply

Your email address will not be published. Required fields are marked *