Information about the Beacon CRM data breach

Information about the Beacon CRM data breach

Information about the Beacon CRM data breach

OneBodyOneFaith has been informed by Beacon CRM, the external system we use to manage membership, supporter and contact information, that it suffered a cyber security incident in July 2026.

Beacon has advised us that an unauthorised individual gained access to parts of its systems and exported data from its customer database. Beacon's investigation indicates that the data may have included customer records and attachments stored within customer accounts.

Because Beacon cannot identify precisely which individual records were accessed or downloaded, we are treating all information held within OneBodyOneFaith's Beacon account at the time of the incident as potentially affected.

Who may be affected?

This incident may affect current and former members, donors, supporters, volunteers, event attendees and others who have been in contact with OneBodyOneFaith and whose details were stored in our Beacon CRM account.

What information may have been involved?

The information held varies between individuals, but may have included:

  • Name and contact information
  • Membership records
  • Donation history
  • Communication preferences and correspondence records
  • ​Notes and attachments relating to interactions with OneBodyOneFaith

We are unable to confirm exactly which records were accessed or what information relating to any individual may have been downloaded.

Why are we publishing this information?

We recognise that information relating to an individual's involvement with OneBodyOneFaith may be particularly sensitive for some members and supporters. We are therefore sharing this information openly so that anyone who may be affected can make informed decisions and remain alert to any unexpected communications.

We are very sorry for this incident and for any concern it may cause. We take the security and confidentiality of personal information extremely seriously. Whilst this incident occurred within Beacon's systems and was outside OneBodyOneFaith's control, please be assured that we are actively engaging with Beacon and doing all we can to understand the situation.

What should I do?

Beacon has advised that it has found no evidence that any of the data obtained has been published or misused.

However, we encourage everyone to remain vigilant and to exercise caution if they receive unexpected emails, messages or telephone calls claiming to be from OneBodyOneFaith or referring to their membership, donations or involvement with the charity.

Further information

If you have any questions or concerns, please contact us at hello@onebodyonefaith.org.uk

We sincerely apologise for the concern and uncertainty this incident may cause.