On Sunday, SafePal reported that it had discovered an “authorization vulnerability” in a plugin used to track customer orders. This flaw likely allowed attackers to view other customers’ orders. You could think of it like a package-tracking system in a store where one shopper could see another shopper’s receipt and delivery details simply by changing the order number.
The leak affected 39,798 customers who placed orders between March 2, 2025, and April 11, 2026.
SafePal emphasized that the underlying security of wallets was not compromised, adding that seed phrases, private keys, bank passwords, bank account details, payment card numbers, and identity documents were not affected.
Nevertheless, the company stated that users who had shared their private keys or seed phrases via phishing emails, phone calls, or postal mail should consider their wallets compromised and transfer their assets to a new wallet.
Customers can use the verification tool on the SafePal website to check whether their data was affected.
