# SafePal data breach exposes personal info of nearly 40,000 customers

**Published:** 2026-08-16T17:51:17.718Z  
**Topic:** Crypto Payments  
**Sentiment:** neutral  
**Publisher:** TrendWatcher — https://www.trendwatcher.in/article/0cecdebb-6de9-4257-a80d-8037a2e43c95

SafePal disclosed an authorization flaw that leaked order details of 39,798 users between March 2025 and April 2026, prompting phishing warnings and a 90‑day

SafePal announced on Aug 16 that an authorization defect in an order‑tracking plugin exposed the personal order information of 39,798 customers, raising immediate phishing risks while confirming that crypto assets, seed phrases and private keys remained untouched【1】.  

| At a glance | |
|---|---|
| Affected users | 39,798 |
| Exposure window | Mar 2 2025 – Apr 11 2026 |
| Data leaked | Names, emails, shipping addresses, phone numbers, purchase details |
| Immediate response | Removed 30+ phishing sites; reduced data retention to 90 days |

## Breach mechanics and timeline  
The flaw allowed unauthorized parties to retrieve another customer’s order record by manipulating the order‑tracking plugin. SafePal first received a phishing report in early May, escalated the issue to a formal investigation in July, and confirmed the defect during a full review of its order‑processing pipeline later that month【1】. A separate configuration error halted a scheduled data‑cleanup between Sep 2025 and Apr 2026, extending the retention of older records and lengthening the exposure period【1】.  

## Mitigation steps and remaining risks  
SafePal patched the vulnerability, added stricter access controls, and now limits personal‑data storage to 90 days, subject to legal requirements. The company removed more than 30 fraudulent websites linked to the breach and set up a dedicated support channel for affected users【1】. Although no wallet credentials or funds were compromised, the disclosed personal details could enable more convincing phishing attacks, prompting SafePal to advise any user who entered seed phrases on suspicious sites to treat the wallet as compromised and create a new one【1】.  

## What to watch  
- Continued monitoring for new phishing domains that leverage the exposed personal data.  
- Any updates from the independent security firm hired to validate the fix and review order‑processing systems.  
- Potential regulatory scrutiny of data‑retention practices in the crypto‑hardware‑wallet sector.  

The breach underscores that even hardware‑wallet providers are vulnerable to non‑wallet‑related attacks, shifting the risk focus toward data privacy and phishing defenses rather than direct asset theft.

## Sources
1. Crypto — [SafePal data breach exposes details of nearly 40,000 users](https://crypto.news/safepal-data-breach-exposes-details-of-40000-users/)
2. CoinDesk — [Crypto wallet SafePal reveals a data breach exposing nearly 40,000 customers' order info](https://www.coindesk.com/tech/2026/08/16/crypto-wallet-safepal-reveals-a-data-breach-exposing-nearly-40-000-customers-order-info)

---
Cite as: TrendWatcher, "SafePal data breach exposes personal info of nearly 40,000 customers", https://www.trendwatcher.in/article/0cecdebb-6de9-4257-a80d-8037a2e43c95
