Update: 12 August 2026
There has been no change in the information we have received relating to the incident – Beacon’s system remains fully secured and functional. As 24-7 Prayer International we are continuing to work closely with those at Beacon and we are reviewing our security arrangements across our various systems and service providers.
Beacon’s incident report remains available at www.beaconcrm.org/incident and FAQs at https://www.beaconcrm.org/incident-faqs
Update: 5 August 2026
After working with Beacon, we can now confirm:
For more details, you can read Beacon’s incident report here: www.beaconcrm.org/incident
4 August 2026
Beacon is a service provider storing contact and supporter information on behalf of 24-7 Prayer International.
On Monday 3 August we were informed by Beacon of a security incident where an unauthorised third party gained access to its system using compromised credentials and made copies of database backups. Based on the evidence currently available, they were likely downloaded.
As a result of this information, we are responding as 24-7 Prayer by immediately outworking our data breach workflow and following all appropriate steps. We have informed the relevant statutory bodies, the Information Commissioner’s Office and the Charity Commission. Separately we will be emailing all impacted individuals whose data was stored within Beacon.
At present, neither 24-7 Prayer nor Beacon has evidence that information has been published online or used fraudulently. This does not mean that misuse is impossible, and we are continuing to assess the risk.
We will continue to share updates on this webpage.