
Stack Sports, a global sports technology and payments platform operated by SPay Inc., has disclosed a data breach that exposed payment card details and bank account numbers.
The breach occurred on May 8, 2026, and was not discovered by Stack Sports until June 8, 2026.
The types of information exposed included cardholder names, payment card numbers, card expiration dates and card security codes (CVV), and checking account numbers. The company confirmed that no Social Security numbers or driver's license numbers were compromised.
Stack Sports filed a breach notification with the attorneys general of California and Nebraska.
Stack Sports began mailing notification letters to affected individuals on July 27, 2026. At this time, the total number of individuals affected remains undisclosed.
The company encouraged affected individuals to remain vigilant by reviewing their account statements for unauthorized charges. Stack Sports directed individuals to contact their card issuer or financial institution if they notice suspicious activity.
The notification included a detailed reference guide with instructions on ordering free annual credit reports, placing fraud alerts and setting up security freezes. It also explained how to review credit reports for warning signs of identity theft, such as accounts opened without authorization, inquiries from unfamiliar creditors or inaccuracies in personal information.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)