Policy Event Β· Medium impact

SafePal Order Tracking Plugin Breach Exposes Nearly 40,000 Customers

SafePal disclosed that an order-tracking plugin flaw exposed information for about 39,798 customers who placed orders between March 2025 and April 2026. The incident highlights wallet-sector compliance risk around third-party plugins, customer data minimization and breach-response controls.

Medium impact🌐 GlobalAMLCustodySafePal

APAC FINSTAB analysis

Although this is outside core APAC, it is relevant because global market-structure, enforcement, and stablecoin precedents often shape licensing expectations for APAC exchanges, issuers, custodians, and DeFi teams. Named institutions or platforms: SafePal. Teams should monitor the original source, map the change to licensing, custody, disclosure, and market-access obligations, and update their jurisdiction playbooks before the next compliance review.

Compliance read-through: map this event to entity licensing, market-access, custody, disclosure, token listing, and operational-risk obligations before expanding or marketing in the affected jurisdiction.

View related AML tracker page β†’

Related policy events

Abracadabra Proposes Orderly Wind-Down For Under-Collateralized MIM Stablecoin

Abracadabra governance proposed an orderly wind-down after concluding that MIM is deeply under-collateralized, with roughly $900,000 of support against about $21 million of bad debt. The proposal creates exchange, DeFi and user-disclosure implications for stablecoin redemption, pool withdrawals and risk labels.

High impact🌐 GlobalStablecoinDeFiRegulationMIMETH