Fife Health Charity has been informed of a cyber security incident affecting BeaconCRM, the supplier which provides the system our charity uses to manage donations and supporter information.  

BeaconCRM has told us that it recently experienced unauthorised access to its systems. Although investigations are still underway, the evidence currently suggests that copies of database back-ups were made and likely downloaded by an unauthorised third party. As a result, we have been advised that donor and supporter information which our charity manages through the Beacon system is likely to have been downloaded. The information which the charity stores on Beacon are names, addresses, contact details, donation records and contact history. However, there is no financial information, such as payment card details or bank account information stored on this system.  

At present, there is no evidence that any information has been published or misused, and BeaconCRM continues to monitor the situation closely with the support of external cyber security experts. BeaconCRM has taken immediate action, including engaging specialist investigators, notifying the relevant authorities and strengthening its security controls. The system remains operational. 

Fife Health Charity is working closely with NHS Fife’s Digital & Information Services and Information Governance teams to review the information provided by BeaconCRM and assess any potential impact and ensure that mitigations are in place. We will continue to monitor the situation carefully and remain in regular contact with the supplier throughout its investigation. 

There is no immediate action that our donors and supporters need to take at this time. However, I would encourage you to remain vigilant for unexpected emails, phone calls or other communication claiming to be from Fife Health Charity or BeaconCRM. Fife Health Charity will never contact you unexpectedly to ask for payment information, passwords or any other sensitive information.