
SafePal
SafePal is a crypto wallet maker founded in 2018 and headquartered in Singapore, best known for its S1 air-gapped hardware wallet and backed by Binance Labs, which incubated it. The S1 keeps your private keys on an EAL5+ secure-element chip and signs transactions completely offline: it has no USB data port, Bluetooth, Wi-Fi or NFC, and talks to the companion app only through QR codes scanned by its camera and screen. SafePal also offers a non-custodial mobile app and browser extension. Its devices have not been drained remotely, but in 2026 a flaw in an order-tracking plug-in exposed customer contact and order data — not keys or funds.
- Founded
- 2018, by Veronica Wong; incubated by Binance Labs2018
- Headquarters
- Singapore
- Flagship device
- SafePal S1 — 100% air-gapped, EAL5+ secure element, QR-code signing · source
- Connectivity
- No USB data, Bluetooth, Wi-Fi or NFC; signs via QR codes with the SafePal app · source
- Product suite
- Hardware wallet plus non-custodial mobile app and browser extension · source
What is SafePal and how the hardware wallet works
SafePal is a wallet company founded in 2018 by Veronica Wong and incubated by Binance Labs, offering a full self-custody suite: the S1 hardware wallet plus a mobile app and browser extension. Its signature product is the S1, a small offline device that generates and stores your private keys on a bank-card-grade EAL5+ secure element and signs every transaction inside itself, so the keys never touch an internet-connected phone or computer.
What makes the S1 unusual is that it is fully air-gapped: no USB data connection, no Bluetooth, no Wi-Fi and no NFC. The USB-C port only charges the device and updates firmware. To send funds you build the transaction in the SafePal app, which shows a QR code; the S1's camera scans it, you confirm on the device's own screen, and the S1 shows a signed QR code back to the app. Nothing sensitive ever leaves the device over a wire or a radio.
Is SafePal safe?
The S1's security rests on two things: an EAL5+ secure element that holds the keys, and air-gapped QR signing that keeps them off any networked device — together defending against remote malware and wireless attacks. As with any hardware wallet, the keys have not been remotely drained from the device; the weak points are human. Buy only from SafePal or an authorised reseller, and never type your recovery phrase into a phone, website or 'support' chat, because the device is the only place it belongs. SafePal also runs the SFP token used across its ecosystem, which is separate from the security of the wallet itself.
Where SafePal has been hit is off the device. In 2026 an authorization flaw in an order-tracking plug-in on its store let outsiders view other customers' order records, exposing names, emails, shipping addresses and phone numbers for roughly 39,800 buyers. Seed phrases, private keys and funds were not exposed and no device was compromised, but the leaked contact data fuels targeted phishing — which is exactly why any message asking for your recovery phrase should be treated as an attack. The incident is detailed below.
Incident record
An authorization flaw in SafePal's order-tracking plug-in let outsiders view other customers' order records simply by changing the order number, exposing names, email addresses, shipping addresses, phone numbers and purchase details of about 39,798 customers who ordered between 2 March 2025 and 11 April 2026. Seed phrases, private keys, wallet passwords, payment-card and ID details were not exposed, and no hardware wallet was compromised. SafePal fixed the flaw, engaged an external security firm, cut order-data retention to 90 days, and took down 30+ phishing sites.
In our ratings
Where we score SafePal against its peers on open data. The number lives there, not here.
Compare with
Frequently asked
Is SafePal safe?+
The SafePal S1 stores your keys on an EAL5+ secure element and is fully air-gapped — no USB data, Bluetooth, Wi-Fi or NFC — signing offline through QR codes, so the keys have not been remotely drained. The main risks are human: buy only from official channels and never share your recovery phrase. A 2026 breach exposed customer contact and order data, but not keys or funds.
How does SafePal's air-gapped signing work?+
The S1 has no wired or wireless data link. You build a transaction in the SafePal app, which displays a QR code; the device's camera scans it, you confirm on the device's own screen, and the S1 shows a signed QR code back to the app. Because nothing sensitive travels over USB, Bluetooth or Wi-Fi, remote and wireless attacks have no path to the keys.
Is SafePal connected to Binance?+
SafePal was incubated by Binance Labs, which was an early backer, and its assets and SFP token are widely used within the Binance ecosystem, but it is an independent Singapore-based company running a non-custodial wallet suite. Binance does not hold your keys — the S1 device and app are self-custody.
What changed
- 2026-09-28Profile created: founding and Binance Labs incubation, how the S1 air-gapped hardware wallet and QR signing work, the safety model, and the 2026 order-tracking data breach (contact data exposed; keys and funds not affected).