I disagree with the "all going to get hacked" approach, but that's because it's my career to make sure that doesn't happen (in a different industry).
I've seen some that do it better, store less data permanently and, even if they were hacked, have everything encrypted and stored properly.
Open...