In a statement, the developer wrote, “We have unfortunately discovered that an illegal attempt has been made to access certain of our online websites, leading to the download of a database containing usernames, email addresses and encrypted passwords. Please note due to the encryption of the passwords it is very unlikely that anything nefarious can be done with this information.
“We would like to reassure everyone that no other information such as credit card details is stored by us and thus was not at any risk from this illegal breach.”
The developer set up a recovery page to create new accounts.
Even if passwords are safe, user handles and real names can be used in phishing schemes, so be careful.