Last updated: 6 August 2026
We understand you may have questions about the recent cybersecurity incident involving Beacon, the database system used by Brave Futures to manage supporter information. We hope the information below answers your questions, but if you need any further support, please contact us at fundraising@bravefutures.org or call 01473 375025.
What happened?
On 27 July 2026, Beacon, the supporter database used by Brave Futures and around 1,500 other charities and organisations, was the target of a deliberate cyberattack.
Beacon informed Brave Futures of the incident on 3 August 2026. They have advised that, while they cannot confirm exactly whose information was accessed, they cannot rule out that personal information held within their system may have been downloaded by an unauthorised third party.
What information may have been affected?
Depending on your relationship with Brave Futures, the information we hold may include:
- Name
- Postal address
- Email address
- Telephone number
- Donation history
- Gift Aid declaration
- Communication preferences
Brave Futures does not store payment card or bank account details within Beacon. This information has not been affected.
Has my information definitely been accessed?
We do not know.
Beacon has advised that they are unable to determine exactly whose information was accessed. As a precaution, they have asked all organisations using their system to assume that supporter information held within Beacon may have been affected.
Has my information been misused?
At this time, there is no evidence that your personal information has been misused.
Beacon continues to monitor the situation and is working with specialist cybersecurity experts and the relevant authorities.
What should I do?
There is nothing you need to do immediately.
However, we recommend remaining vigilant and taking care if you receive unexpected emails, telephone calls or text messages asking for personal or financial information.
Brave Futures will never ask you to provide passwords, payment card details or bank account details by email or over the telephone.
If you receive a communication claiming to be from Brave Futures that you are unsure about, please contact us before responding.
What has Beacon done?
Beacon has advised that it has:
- Secured its systems to prevent further unauthorised access.
- Appointed specialist cybersecurity experts to investigate the incident.
- Reported the incident to the relevant authorities.
- Continued to monitor the situation and strengthen its security measures.
What has Brave Futures done?
As soon as we were informed of the incident, we:
- Contacted Beacon to understand the incident and the actions they were taking.
- Reported the incident to the Information Commissioner’s Office.
- Reported the incident to the Charity Commission.
- Informed our Board of Trustees.
- Reviewed our own processes and continue to monitor the situation closely.
Although this incident occurred within a third-party system, we wanted to be open and transparent with everyone who may have been affected.
Why have I received this email?
You may have received our email because you have:
- Made a donation to Brave Futures.
- Taken part in or attended one of our events.
- Signed up to receive our newsletter or other updates.
- Supported one of our fundraising campaigns.
- Otherwise chosen to stay connected with Brave Futures.
- Can I change my communication preferences?
Yes. If you would like to update how we contact you or no longer wish to receive fundraising communications, please email fundraising@bravefutures.org, and we will be happy to help.
Who can I contact if I have questions?
If you have any questions or concerns, please contact our team.
Email: fundraising@bravefutures.org
Telephone: 01473 375025
We understand this news may be concerning, and we sincerely appreciate the trust you place in Brave Futures. We will continue to update this page should any significant new information become available.