← All Flash News

SafePal Security Flaw Exposes Order Data of Nearly 40,000 Customers

SafePal hardware wallet beside a laptop with a security warning symbol, illustrating a customer order data security incident.

Crypto wallet provider SafePal said that faulty authorization controls in an order-tracking plugin exposed personal and purchase information belonging to about 39,798 customers.

The incident involved purchases placed from March 2, 2025, through April 11, 2026. Customer records accessible through the flaw contained purchase details and contact information, including names, phone numbers, email addresses, and shipping addresses.

SafePal said sensitive wallet credentials — including private keys, seed phrases, and passwords — were unaffected. Payment information and government-issued identification numbers were also outside the scope of the incident.

The company said it found no evidence that the breach resulted in unauthorized wallet access or put customer funds at risk.

Source: SafePal