Skip to content
SafePal Discloses Authorization Flaw Exposing Order Data of 39798 Customers

SafePal Discloses Authorization Flaw Exposing Order Data of 39798 Customers

Newscord • August 17, 2026

Authorization flaw exposed order data for 39,798 SafePal customers. Personal data exposed: names, addresses, emails, phones, and purchase details; keys/seeds remained safe.

Whether the timeline of discovery and escalation is emphasised

Beat 2 · The divide, quote v quote

“ That's more than three months between the first warning sign and the moment customers found out ”

“ An authorisation flaw in the order tracking system allowed access ”

Do not take our word for it. Here is what they published.

SEC Cancels Friday Vote On Crypto Rules, Citing Unforeseen Scheduling Issue

18 sources compared →

JPMorgan Ends Banking Ties With Polymarket Over Regulatory Concerns, Financial Times Says

14 sources compared →

SafePal disclosed a data breach affecting 39,798 customers after an authorization flaw in its order-tracking system allowed unauthorized access to order information tied to customers’ purchases.

“ between Mar 2, 2025, and Apr 11, 2026 ”

The company said the affected orders were placed between Mar 2, 2025, and Apr 11, 2026, and that the exposed records included names, email addresses, shipping addresses, phone numbers and purchase histories.

SafePal said the breach did not involve access to “seed phrases”, private keys, wallet passwords, bank account information, payment card numbers or government-issued identification numbers, and it said it found no evidence of unauthorized wallet access or asset theft.

In response, SafePal said it fixed the issue and introduced further security measures, including reducing personal-data retention in its order-processing system to 90 days.

SafePal warned that exposed order details could be used for targeted phishing and impersonation attempts, with attackers armed with genuine names, addresses and purchase details to craft more convincing fraudulent communications.

The company said attackers may impersonate SafePal employees and try to steal wallet credentials by using firmware updates, refunds or replacement devices as a pretext.

SafePal also told customers to treat unexpected as suspicious, and it warned: "Consider suspicious any unexpected or hardware delivery that references your SafePal purchase".

Bloomingbit reported that SafePal disclosed the authentication flaw on X and that it had not immediately responded to The Block ’s emailed questions the timing of the flaw’s introduction or how many attackers obtained the data.

SafePal said it has identified and taken down more than 30 fraudulent websites and phishing links tied to the breach, and it said it emailed affected customers individually on Sunday.

“ SafePal has now reduced personal-data retention in the relevant order-processing environment to 90 days ”

The company said it is engaging an independent third-party security firm to validate its fix and conduct a broader review of its order-processing systems, and it said the firm has not yet been named publicly.

SafePal also said affected customers’ personal information has been removed from active e-commerce servers while an encrypted offline copy is being retained to support potential investigations.

In addition to tightening retention to 90 days, SafePal said it launched a verification tool allowing buyers to check whether their orders were affected using their order number and shipping country.

Story read · 16 outlets · 1 disagreement · 1 fact unevenly covered

OCC Grants Preliminary Conditional Approval To World Liberty Trust Co. For National Trust Bank Charter

how 11 outlets framed it →

Payward Reports $508 Million Q2 Revenue Up 17% as Transaction Volume Falls 13%

how 10 outlets framed it →

Bank Leumi Partners With Galaxy Digital to Launch Bitcoin, Ethereum, and Solana Trading in 2027

how 11 outlets framed it →

Whether the timeline of discovery and escalation is emphasised

“ That's more than three months between the first warning sign and the moment customers found out ”

“ An authorisation flaw in the order tracking system allowed access ”

Startup Fortune stresses slow escalation; The Business Times focuses on the technical cause.

Western Alternative ( 4 )

Every outlet we compared, the headline it ran, and a link to the original article.

Crypto wallet SafePal reveals a data breach exposing nearly 40,000 customers' order info

SafePal and Trezor expose data of 53,000 customers: addresses are the new loot

SafePal Reports Data Breach Affecting Approximately 40,000 Users

Breach at Crypto Wallet Company Called ‘SafePal’ Exposes 39,798 Customers

Data breach affects 40,000 cryptocurrency wallet customers

Company Safbal, the digital wallet protection company, announces data breach affecting 40,000 customers

SafePal announces a data breach affecting 40,000 users

Suvbal reveals a security breach affecting data of 40,000 users

SafePal Says Authorization Flaw Exposed Order Data of Nearly 40,000 Customers

SafePal data breach exposes details of nearly 40,000 users

SafePal revela una brecha de seguridad que afecta a 39.798 usuarios mientras aumentan los riesgos de phishing

SafePal, proveedor de carteras de criptomonedas, sufre una brecha de seguridad que afecta a los datos de casi 40.000 usuarios

SafePal order-tracking flaw exposed personal da...

SafePal Confirms Data Breach Exposed Order Details of Nearly 40,000 Users

SafePal Says Personal Data of 39,798 Customers Was Exposed, Warns of Phishing

Crypto wallet provider SafePal discloses data breach affecting nearly 40,000 users' order information

Get every Crypto story like this one, in one email

Daily or weekly, only the topics you follow, each with the difference our analysis found across the outlets covering it.

OCC Grants Preliminary Conditional Approval To World Liberty Trust Co. For National Trust Bank Charter

Payward Reports $508 Million Q2 Revenue Up 17% as Transaction Volume Falls 13%

Bank Leumi Partners With Galaxy Digital to Launch Bitcoin, Ethereum, and Solana Trading in 2027

SEC Cancels Friday Vote On Crypto Rules, Citing Unforeseen Scheduling Issue