Pokémon Center has cancelled customer orders and halted shipments across the United Kingdom and Germany following a data breach at its primary logistics partner, CEVA Logistics. The security incident, which took place between July 29 and August 1, compromised personal data belonging to buyers on both regional storefronts.
Compromised Customer Data
The breach exposed multiple fields of private user information stored within CEVA's shipping systems. According to official notifications sent to affected buyers, the stolen data includes full names, mailing addresses, email addresses, phone numbers, and specific order details.
Financial information remains secure. Pokémon Center confirmed that payment card numbers and billing details were not compromised, as CEVA does not process or store financial credentials.
Cancelled Orders and Anniversary Stock
The logistics disruption directly impacted order fulfillment. Customers awaiting merchandise have seen their purchases abruptly cancelled, including high-demand items tied to the Pokémon 30th anniversary product line.
Affected buyers must now repurchase items manually through the Pokémon Center UK and German storefronts. Because inventory levels fluctuate rapidly, displaced customers face a high risk of missing out on sold-out merchandise, with no automated system in place to restore original orders or reserve stock. The operational fallout from the CEVA cyberattack is expected to generate extended fulfillment delays for all active shipments moving forward.



