Beacon Data Breach Notification

The information below was shared with the National Parliamentary Prayer Breakfast (NPPB) email database on the 7th of August 2026 by the trustees of the Parliamentary Christian Trust.  For the latest updates from Beacon please visit: https://www.beaconcrm.org/incident

We are sorry to inform you of a recent data breach that may have affected your personal data. We hold personal data for you relating to invitations and bookings for the annual National Parliamentary Prayer Breakfast (NPPB) and we use a third-party database system, called Beacon, to manage this. The Parliamentary Christian Trust provides support to the Christians in Parliament APPG and is the data controller responsible for the NPPB. 

We have been informed by Beacon that they have detected a cyber-security breach of their system and as a result, some of your personal data may have been downloaded by an unauthorised third party.

We sincerely apologise that this has happened. Beacon is used by over one thousand charities because until now it has had a track record of managing data well and securely. In this instance, that security has failed and we are sincerely sorry.

What happened

Beacon informed us on Monday 3 August 2026 that on Wednesday 29 July 2026 an unauthorised third party gained access to its systems using compromised credentials. On Tuesday 4th August 2026 Beacon informed us that copies of database backups were made and are believed to have been downloaded.

Beacon have informed us that they are unlikely to be able to identify precisely which organisations, records or individual pieces of information were accessed. We are therefore taking a cautious approach and treating all the information held in our NPPB Beacon account at the time of the incident as potentially affected. 

Beacon have also informed us that there is not yet any indication that the compromised information has been leaked or shared publicly. 

What does this mean for you?

The data that might have been affected includes:

names, job titles, addresses, email addresses, phone numbers, church names and addresses. 

We currently have no evidence that the information has been misused. 

No financial information was stored on Beacon, therefore no personal financial information has been exposed.

We recommend that you remain alert to unexpected phone calls, emails, text messages containing links, or requests for personal information. Contact details obtained through a data breach can sometimes also be used to facilitate phishing attempts, scam messages, spam emails, or other unsolicited communications.

If you are ever unsure whether a communication claiming to be from the National Parliamentary Prayer Breakfast, Christians in Parliament APPG or Parliamentary Christian Trust is genuine, please contact christiansinparliament@gmail.com

What we are doing

We have:

•    reported this incident to the Information Commissioner’s Office, the UK’s regulator for data protection 
•    reported this incident to the Charity Commission
•    reviewed the information we store in Beacon
•    secured and reviewed our Beacon account and access credentials
•    assessed the possible risks to the people whose information we hold
•    reviewed our own security and data-retention arrangements
•    reported this to all people with personal data in our Beacon NPPB account

We will undertake a thorough review of whether Beacon is the appropriate database to store contact information for the NPPB in future.

What Beacon are doing

Beacon have implemented immediate measures to secure their systems and prevent any further unauthorised access. 

In addition, they are:
•    Conducting a thorough forensic investigation with their external cyber-security specialists to understand exactly what happened;
•    Working with law enforcement and relevant regulators as required;
•    Conducting online monitoring, as is standard practice in these kinds of incidents. So far, they haven’t seen anything of concern;
•    Completing precautionary security measures.

Our sincere apologies

We take the security of your personal data extremely seriously and are very sorry that this incident has occurred.

We will continue to monitor the situation closely and update you if any new relevant information comes to light. For further information and updates from Beacon, please see here: https://www.beaconcrm.org/incident.

If you have any questions or concerns about how your personal data has been handled, please contact christiansinparliament@gmail.com

Further information about how we manage your personal data and your rights can be found in our privacy policy here: Privacy Policy – Christians in Parliament.

Yours sincerely,

The Board of Trustees, Parliamentary Christian Trust