Benevity experienced a major incident on March 25, 2025 affecting Donate and Volunteer Core Services and Grants Essential (formerly Benevity Grants) and 1 more component, lasting 1h 40m. The incident has been resolved; the full update timeline is below.
Affected components
Update timeline
- investigating Mar 25, 2025, 06:27 PM UTC
We are experiencing an issue with Login for the following applications: Grants, Reporting Studio, Employee Groups, API, and some Mobile Clients. We are investigating.
- identified Mar 25, 2025, 06:34 PM UTC
We are experiencing an issue with Login for the following applications: Grants, Reporting Studio, Employee Groups, API, and a few Mobile Clients. One of our 3rd party providers has identified an issue, and is working to remediate.
- identified Mar 25, 2025, 06:56 PM UTC
Our 3rd party provider has identified the issue, and is currently rolling out the solution. We are starting to see some recovery in the login flow for some clients.
- monitoring Mar 25, 2025, 07:34 PM UTC
Our 3rd party provider has identified the issue, and has rolled out the solution. Login issues seem to have recovered. We are monitoring.
- resolved Mar 25, 2025, 08:07 PM UTC
This incident has been resolved.
- postmortem May 05, 2025, 01:45 AM UTC
## Summary Benevity’s external identity provider had an internal outage in their cloud infrastructure. As a result, users were unable to login if the product and client used our external identity provider for authentication. The impact started on March 25th at 12.09 PM MDT, and was mitigated on March 25th at 12.57 PM MDT. ## Impact Users were unable to log in if the product and client used our external identity provider for authentication. The impact started on March 25th at 12.09 PM MDT, and was mitigated on March 25th at 12.57 PM MDT. ## Root Cause Our external identity provider had an internal outage in their cloud infrastructure. As a result, users were unable to log in if the product and client used our external identity provider for authentication. ## Future Mitigation * Improve proactive monitoring and alerts. * Consider implementing graceful degradation with clear user messaging. * Enhance login error messages for better user guidance. ## Timeline of Events * 12:09 PM MT - Initial alert received * 12.19 PM MT - Identified issues with our external identity provider * 12:57 PM MT - Incident resolved; systems fully operational