⚠️ SafePal’s order-tracking plugin just got cooked — order data for ~39.8k users (names, addresses, phones & emails) got leaked.
Wallets + seed phrases are still safe fr, but this is pure fuel for precision phishing. Scammers are already loading up.
Real talk: SafePal will NEVER ask for your seed phrase or private keys. Don’t scan random QRs or leak any verification info!
Dear community,
While your SafePal wallet, seed phrase, and private keys are secure; we identified a flaw in the order-tracking plug-in that led to unauthorized access to information of a subset of customers.
The issue has been fixed with additional security measures introduced.
The incident impacts approximately 39,798 customers who placed orders between March 2, 2025 and April 11, 2026. Exposed information includes name, email address, shipping address, phone number, and purchase details.
All affected customers have been notified individually by email. We have also published this webpage for customers to verify if they are affected using order ID number and shipping country.
For a complete disclosure of the incident and the actions we’ve taken, along with FAQs and guidance, please refer to our blog:
This incident did not involve your seed phrase, private keys, wallet password, or other wallet credentials, bank account information, payment card numbers, or government-issued identification numbers.
Never share your seed phrase, private key, or password with anyone, and stay vigilant against phishing or impersonation attempts.
We are extremely sorry to the community and those who are affected. Updates will be posted on our blog as we continue to work through things.
Show more