Although GameStop's website exposed other customers' personal information , the company claims it was just a test and not an actual data leak.
See also: Meta: Fined for old Facebook user data leak

On Saturday, some customers using GameStop's website found that they could see other customers' personal information when they refreshed their order page. Multiple page changed the customer data that was visible. The data included names, addresses, phone numbers, order history and at least some payment card information.
GameStop's customer service team responded to the apparent breach, stating that "the addresses and names appearing on customer accounts were part of a test and not actual customer data." Although the issue was fixed the same day, many people are skeptical of the explanation that it was just a test.
See also: Scam: Blackmailers target site owners and threaten to leak data

Andy Robinson, owner and editor of VGC, has seen “dozens of images with emails, addresses and phone numbers that clearly belong to real people.” Credit card numbers are only partially visible. Additionally, after GameStop shared customer data with others, some customers received phone calls.
Since this is the case, if GameStop was indeed conducting a test, it would appear that it was using real people's information. While GameStop has not clarified whether this is true or not, it seems likely that the test data came from real names and addresses.
See also: Medibank: Refuses to pay ransom – Hackers press with data leak
GameStop Corporation is an American video game and entertainment software retailer , with more than 2,000 stores across the United States. The company offers a variety of gaming devices and games for purchase or rental from its retail locations and online store.
