SafePal Breach Exposes Customer Order Data
Coverage from Gridinsoft Blog, SC Media, and others

SafePal disclosed that an authorization flaw in its order-tracking system or plugin allowed access to order information for approximately 39,798 customers between March 2, 2025, and April 11, 2026.
Exposed data included names, contact details, shipping addresses, and purchase information, while SafePal said seed phrases, private keys, wallet credentials, payment data, identification documents, and funds were not exposed. The company patched the flaw, notified customers, removed associated phishing sites, reduced order-data retention, and commissioned additional security measures.
The current version adds a possible data-cleanup or retention error that may have left older order records accessible longer than intended. Otherwise, it largely confirms the previously reported breach, exposure, and remediation measures.
