Preferred Parking data breach (2026): was your email exposed?

Preferred Parking Service, the Charlotte parking operator, told state regulators in August 2026 that someone was inside its systems on June 7 and 8 and reached customers' credit and debit card details. The filings put the notification at 72,912 people, 61,335 of them North Carolina residents. Check whether your email was caught up in it — and lock down your accounts before the data is misused.

See which breaches hold my email — free →
Breach date
2026
Publicly disclosed
August 2026
People notified
72,912 notified
Website
preferredparking.com
An email check won’t confirm this one

This incident is known from Preferred Parking’s own notice and regulatory filings, not from a set of leaked records that anyone can search. The data was taken, but it hasn’t been published — so no breach-checking tool, ours included, can tell you whether you were in it. The letter is the answer: if one arrived, treat yourself as affected. A free check is still worth running for a different reason — it shows which other breaches already hold your email.

The figure comes from the company's breach filings with state regulators, reported by Charlotte press in late August 2026: 72,912 people nationwide, of whom 61,335 are North Carolina residents and 5,176 are in South Carolina, with filings also made in Vermont and Massachusetts. It counts the letters going out, not confirmed card fraud, and the company has published no figure of its own beyond those filings. Source: Preferred Parking Service's breach filings with the North Carolina and Vermont attorneys general, dated mid-August 2026, and Charlotte press coverage of those filings on August 24 and 25, 2026.

What happened in the Preferred Parking breach?

Preferred Parking Service runs parking in Charlotte and across the Southeast: decks and surface lots downtown, university lots, event parking and valet. It has been in the city since 1961 and holds thousands of spaces there under its own name. Most people who end up in a file like this never signed up for anything and would struggle to name the operator. You paid at a gate, a kiosk or an app for an evening downtown, and the card details went into the company's systems along with the transaction.

By the company's own account to state regulators, someone had access to its systems on June 7 and 8, 2026. Working out who was actually caught in it took until July 30, when the review of the affected files finished, and the notification filings reached state attorneys general in the middle of August. Reporters in Charlotte picked them up on August 24 and 25. That gap between the intrusion and the envelope is ordinary, and it is also why the first many people hear of any of this is a letter arriving eleven weeks after the fact.

The filings put the total at 72,912 people, with 61,335 of them in North Carolina and 5,176 in South Carolina; the company filed in Vermont and Massachusetts as well. What was reached is payment data: credit and debit card and financial account details tied to customers. The company has said the incident did not involve ransomware, that employee records were not part of it, and that it has since tightened its network security. No set of records from it has been published anywhere, which is why nothing about this one is searchable.

Card exposure is the rare kind of breach with a clean fix, and it is worth doing rather than waiting for a charge you do not recognise. Ask your bank to reissue any card you used at a Charlotte garage, lot or event in the first half of 2026, and switch on transaction alerts so the next unfamiliar charge reaches you the same minute it lands. A card number can be cancelled; your name, your address and the fact that you park downtown cannot, and those are the pieces that make a follow-up call sound legitimate. Anyone who rings quoting a parking charge and asks you to confirm the card is running the scam that follows a notification wave, not the bank.

What data was exposed in the Preferred Parking breach?

The Preferred Parking breach exposed names, credit card numbers, debit card numbers and financial account information. The more of these are tied to you, the more ways an attacker can impersonate you or break into your other accounts.

NamesCredit card numbersDebit card numbersFinancial account information

How the leaked Preferred Parking data can be used against you

Because the Preferred Parking breach exposed names, credit card numbers, debit card numbers and financial account information, exposed payment details raise the risk of fraudulent charges.

How to check if you were affected

For this one, the notification letter is the only confirmation there is — nothing about it is searchable yet. If you got a letter, use only the contact details printed on it, because scam waves follow every notification rollout. What you can check right now is the rest of your exposure: which known breaches already hold your email, and what leaked in them.

Check my email against known breaches — free →

What to do if your Preferred Parking account was breached

These steps are prioritized for exactly the kind of data the Preferred Parking breach exposed.

1
Turn on two-factor authentication

Add 2FA — ideally an authenticator app or a passkey rather than SMS — to your email, banking and other important accounts, so a stolen password alone can’t get in.

2
Watch your finances

Check bank and card statements for charges you don’t recognize, set up transaction alerts, and ask your bank to reissue any card that may have been exposed.

3
Monitor whether your data resurfaces

Leaked data is resold for years, so a one-time clean-up isn’t enough. Ongoing breach and dark-web monitoring tells you the moment your details reappear, so you can act before an account is misused.

Common questions

The Preferred Parking breach, answered

Was I affected by the Preferred Parking breach?

The notification letter is the only confirmation there is. Nothing from this incident has been published as a searchable set of records, so no breach-checking tool can answer it for you, ours included. If you parked at a Preferred Parking deck, lot or event during the first half of 2026 and paid by card, you are inside the population the filings describe, and a letter is what confirms it. State filings put the notification at 72,912 people, the large majority of them in North Carolina.

Is the Preferred Parking breach letter I received genuine?

Letters from a real notification rollout do arrive by post and can look alarming. Verify it the safe way: use only the phone number or web address printed on the letter itself, typed in by hand — never a link in an email or text about the breach. Notification waves are followed by scams that copy the wording of the real letter.

What data was involved in the Preferred Parking breach?

Per the disclosure, the data included names, credit card numbers, debit card numbers and financial account information. Affected people: 72,912 notified. The figure comes from the company's breach filings with state regulators, reported by Charlotte press in late August 2026: 72,912 people nationwide, of whom 61,335 are North Carolina residents and 5,176 are in South Carolina, with filings also made in Vermont and Massachusetts. It counts the letters going out, not confirmed card fraud, and the company has published no figure of its own beyond those filings.

What should I do after the Preferred Parking breach?

Watch medical bills and insurance statements for care you never received, since that is how health-data misuse usually surfaces. Be sceptical of any call or email about this breach, especially one asking you to confirm details — the company contacts people by post first.

When did the Preferred Parking breach happen?

The incident is dated June 2026 and became public in August 2026. Source: Preferred Parking Service's breach filings with the North Carolina and Vermont attorneys general, dated mid-August 2026, and Charlotte press coverage of those filings on August 24 and 25, 2026.

Is there compensation for this breach?

Breaches this size often end in a class action, and a settlement can take a year or more to reach a claim form. If one opens for Preferred Parking, it will be run by a court-appointed administrator and announced on the company’s own breach page — never through an unsolicited email asking you to confirm bank details. Our guide to breach settlement claims covers who qualifies, what a payout actually covers, and the deadlines that decide it.

Was your email in the Preferred Parking breach?

Check free in about a minute — then we’ll help you remove your exposed data and keep it monitored.

Run my free breach check →