SafePal AIR-GAPPED / SECURE ELEMENT
SEC-01 // OVERVIEW

How SafePal keeps crypto keys offline and still usable

SafePal is a crypto wallet company founded in 2018 that builds hardware signing devices alongside a free multi-chain app and browser extension. The premise behind SafePal is easy to state and hard to engineer: keep the private keys on a small device that has never been connected to the internet, and pass nothing between that device and your phone except transaction data the device has already inspected and signed.

This page walks through what the SafePal product family actually contains, how the camera-and-screen signing loop on the air-gapped models works, what the SFP token is for, how asset coverage is organized, and how to set a SafePal wallet up without making the two or three mistakes that cost people their funds. Where a claim depends on marketing figures or a shipping spec that changes between hardware revisions, that is flagged rather than presented as fact.

It is written for someone deciding whether a self-custody wallet of this kind fits how they hold crypto, and for someone who already owns a SafePal device and wants to understand what the hardware is doing on their behalf.

A SafePal hardware wallet device beside a smartphone running the SafePal app
Two halves of one system: the offline signer holds the keys, the phone app holds the balances, prices and network connection.
Founded
2018
Key custody
Self
Data channel
QR / BLE
Early backer
Binance Labs

SEC-02 // PRODUCT MAP

The SafePal ecosystem in plain terms

Most people meet SafePal through one of two doors. The first is the hardware: a pocket-sized signer with a small screen, a few buttons, and no radio or data port for moving keys off it. The second is the app, which is free, works on its own as a normal mobile wallet, and becomes the interface for the hardware once a device is paired. Both doors lead to the same design, in which the SafePal app never learns your private keys when a hardware device is in the loop.

Around those two products sit a browser extension for desktop use, a metal recovery-phrase backup product, and the SFP token that powers fee discounts and membership perks inside the app. Nothing in that list is a prerequisite for the others. You can run the SafePal app with a phone-only wallet, add hardware later, and never touch SFP at all.

SafePal was one of the earlier hardware wallet companies to receive investment from Binance Labs, which is why the app has always leaned heavily toward exchange-adjacent features such as in-app swaps and staking rather than positioning itself as a minimal key-storage tool. That shapes the product: SafePal is closer to a full wallet client with a hardware root of trust than to a bare signing appliance.

The company reports users across the world in the millions and publishes support for well over a hundred blockchains, though exact counts move with each release and are best checked in the app itself. What matters more for a buying decision is the architecture, and that has stayed consistent across every SafePal generation.

01

Hardware signers

Offline devices that generate and hold keys, display transaction details, and sign.

02

Mobile app

Balances, prices, swaps, staking, NFTs and the dApp connection layer.

03

Browser extension

Desktop access to web apps using the same accounts as the phone.

04

Backup and token

A metal seed-phrase board for recovery words, plus the optional SFP token.


SEC-03 // SIGNING PROTOCOL

The air-gapped signing loop

The signature feature of the flagship SafePal devices is that they have no USB data connection, no Bluetooth and no Wi-Fi. The only way information enters the device is through its camera, and the only way information leaves is through its screen. Both channels carry QR codes. That arrangement is what people mean by an air gap, and it is the core security argument for this product line.

The QR-code signing loop between the SafePal app and an air-gapped SafePal device The online app builds an unsigned transaction and shows it as a QR code. The offline device scans it, signs it internally, and displays a signed QR code. The app scans that code and broadcasts the transaction. No cable or wireless link crosses the gap. AIR GAP Online side SafePal app / extension Reads balances and fees Builds the unsigned transaction Broadcasts once signed holds: no private keys Offline side SafePal hardware signer Generates and stores the keys Shows amount and address Signs only after you confirm holds: keys, never exported unsigned QR signed QR
Diagram: the two-way QR exchange used by air-gapped SafePal models. Camera in, screen out, nothing else.

In practice the loop takes a few seconds. You compose a transfer in the app, the app renders a QR code containing the unsigned transaction, you hold the SafePal device up to the phone screen, and the device decodes it. The device then shows you the amount, the destination address and the network fee on its own display. Nothing has been signed yet, and nothing can be signed without a physical press on the device.

That on-device display is the part people underrate. Malware on a phone can rewrite a destination address in the app interface, but it cannot rewrite what the offline screen shows, because the offline screen is driven by the data the SafePal device parsed for itself. Comparing the two screens before confirming is the whole point of owning the hardware, and skipping that comparison discards most of the benefit.

Once you approve, the SafePal device produces a signature inside its secure chip and renders the signed transaction as a second QR code. The phone scans that code and broadcasts it to the network. The signature travels out, the key never does. Even a fully compromised phone ends up holding data that was already public the moment it hit the blockchain.

The trade-off is friction. Bluetooth and USB wallets confirm with a tap; an air-gapped SafePal asks you to line up a camera twice. For long-term holdings that friction is a feature, since it slows down exactly the moments where haste causes losses. For someone signing dozens of transactions a day, it is a real cost, which is why SafePal also sells a wireless model for people who want a lighter routine.


SEC-04 // HARDWARE

The SafePal hardware lineup

SafePal has shipped several device generations since 2019, and they split cleanly into two philosophies. The S-series keeps the air gap and communicates only by QR code. The X-series trades the air gap for a wireless link and a faster confirmation flow. Alongside both sits a non-electronic product for storing the recovery phrase itself.

Exact specifications, screen sizes, battery life and box contents change between production runs, so treat the summaries below as a description of what each product is for rather than a datasheet. Confirm current details for any SafePal model you plan to buy before ordering.

S1 air-gapped

SafePal S1

The device that established the product line. The SafePal S1 has a small color screen, a directional pad, a camera for scanning QR codes, and a certified secure element chip that generates and stores keys. It has no Bluetooth, no Wi-Fi and no data-carrying port, so the QR loop is the only way in or out.

It runs on an internal battery, charges over a power-only cable, and is meant to spend most of its life switched off in a drawer or a safe. For cold storage of coins you rarely move, the S1 remains the archetypal SafePal choice.

S1 PRO air-gapped

SafePal S1 Pro

A refreshed take on the same idea, with a larger and brighter display, a reworked body and an updated secure chip. The signing model is unchanged: camera in, screen out, physical confirmation on the device.

Anyone choosing between the two air-gapped SafePal models is mostly choosing between price and comfort. The security story is the same; the Pro simply makes reading long addresses and navigating menus less of a squint.

X1 bluetooth

SafePal X1

The wireless member of the family. The SafePal X1 pairs to the app over Bluetooth, so confirmations happen with a button press instead of two camera scans. Keys still live in a secure element on the device and still never leave it, and transaction details still appear on the device screen for approval.

What changes is the attack surface: a radio is a live interface, which is a broader target than a camera lens. Many users keep an X1 for active trading and an S1 for the balance they never intend to touch, using two separate recovery phrases.

CYPHER no electronics

SafePal Cypher seed board

A metal plate system for recording a recovery phrase without paper. Letters are set into the board rather than written, so the backup survives water, fire and the slow fade that kills ballpoint ink in a drawer over ten years.

It is a small purchase that addresses the most common cause of permanent loss, which is not hacking but a destroyed or misplaced phrase. Any recovery phrase works with it, not only one generated by a SafePal device.

Key takeaway

Every SafePal hardware device does the same essential job: it keeps the private key inside a chip and shows you what you are about to sign on a screen you control. The differences between models are about how the signed data travels and how pleasant the device is to use, not about who holds your keys.


SEC-05 // SOFTWARE

The app, the extension, and what they are allowed to know

The SafePal app is available for iOS and Android and costs nothing. Used on its own it behaves like any mobile self-custody wallet: it creates a recovery phrase, stores the resulting keys in the phone's own protected storage, and signs transactions locally. This is convenient and reasonable for small balances, but it is a hot wallet, and the keys share a device with a browser, a messaging app and everything else you have installed.

Pair a hardware device and the roles shift. The SafePal app becomes a viewer and a courier. It tracks balances, fetches prices, estimates fees, assembles transactions and broadcasts them, but the signing authority sits in the hardware. That separation is what lets you run a wallet interface on an ordinary internet-connected phone without exposing the material that controls the funds.

Feature-wise, the app is broad rather than minimal. It bundles token swaps routed through third-party liquidity, cross-chain transfers, staking for supported networks, NFT display, a dApp browser and WalletConnect support for connecting to web applications. Fiat purchases go through outside payment providers with their own identity checks and fees, which is worth remembering when comparing costs.

On desktop, the SafePal browser extension covers the same ground for websites that expect a wallet in the browser. It can hold its own accounts or act as the front end for a paired device, which is the more sensible configuration if you interact with DeFi contracts from a computer.

One habit is worth building early. Because SafePal offers both software-only and hardware-backed accounts inside one interface, it is easy to lose track of which account is protected by what. Name them clearly the day you create them, keep the hardware-backed account for anything meaningful, and treat the phone-only account as spending money you would not mourn.


SEC-06 // ARCHITECTURE

Security architecture, layer by layer

Hardware wallet marketing tends to collapse into a list of acronyms. It helps more to ask what each layer of a SafePal device is defending against, because the threats are quite different from one another and no single measure covers them all.

L1

Secure element

Keys are generated and kept inside a dedicated tamper-resistant chip rather than general memory. SafePal states that its devices use secure elements certified to Common Criteria EAL grades, the same class of component used in payment cards and passports.

L2

True random generation

A recovery phrase is only as strong as the randomness behind it. Hardware-based random number generation is used so the phrase does not depend on a predictable software source, which is the flaw that has broken more than one homemade wallet.

L3

Tamper response

SafePal describes a self-destruct mechanism that wipes key material if the device detects physical intrusion. The goal is to make opening a stolen device useless rather than merely difficult.

L4

No key export path

There is no function, cable or command that exports a private key from a SafePal signer to a computer. Signatures leave; keys do not. This is why a compromised host machine cannot quietly drain a hardware-backed account.

L5

On-device verification

Amount, address and network fee are rendered by the device from the transaction it parsed. Your eyes on that screen are a security layer, and the only one that catches address substitution.

L6

Local PIN and wipe

A PIN gates use of the device, and repeated wrong entries trigger erasure. Physical theft becomes a race the thief cannot win, provided your recovery phrase is not stored next to the device.

What none of these layers can defend against is authorization. If you sign a malicious contract approval, the transaction is valid, and SafePal will carry it out because you told it to. The same is true of sending funds to an address you copied from a scammer. Hardware protects the key, not the decision.

That is also why the recovery phrase deserves more paranoia than the device. A SafePal signer is a replaceable object; the phrase is the account. Anyone who reads those words controls the funds forever, no matter how good the chip inside the hardware happens to be.

A hardware wallet moves the risk rather than removing it. With SafePal, the question stops being whether a server was breached and becomes whether you can protect twelve words and read a small screen carefully.

SEC-07 // COVERAGE

Networks and assets

Broad chain coverage has always been part of the SafePal pitch, and the supported list is long enough that reproducing it here would be out of date within weeks. The useful mental model is by family, because adding a token on a chain the wallet already supports is trivial, while adding a new chain requires real firmware and app work.

Network families supported by SafePal wallets
Family Typical examples What this means in the app
Bitcoin and UTXO chains Bitcoin, Litecoin, Dogecoin, Bitcoin Cash Plain sends and receives with fee selection. No smart contracts to review.
EVM networks Ethereum, BNB Chain, Polygon, Arbitrum, Optimism, Avalanche Tokens, NFTs, contract calls and dApp connections. The area where careful reading matters most.
Other major layer ones Solana, Tron, Cosmos-based chains, Polkadot Native accounts with their own address formats and, on some chains, staking.
Tokens on supported chains Stablecoins, governance tokens, custom contracts Searchable in the token list, or added manually by contract address.

Two practical notes. First, a chain being visible in the SafePal app does not always mean the hardware firmware can sign for it, so check hardware support specifically for anything unusual before moving a large balance. Second, sending an asset to the right address on the wrong network is still the fastest way to lose money in multi-chain wallets, and SafePal cannot reverse it.

If a chain you rely on is missing, the standards-based recovery phrase means you are not trapped. The same phrase can be restored in another compatible cryptocurrency wallet to reach that network, while SafePal continues to handle everything else.


SEC-08 // TOKEN

SFP, the SafePal token

SFP is the token issued by SafePal, distributed through a Binance Launchpool program in 2021 and issued on BNB Chain. It is a utility and loyalty token attached to the wallet's own services, not a share in the company and not a requirement for using any SafePal product.

Inside the app, holding or spending SFP has historically unlocked reduced fees on in-app swaps, membership tiers with additional perks, discounts on hardware purchases and access to promotional campaigns. Programs like these are adjusted regularly, so treat the current terms in the app as authoritative rather than any description written elsewhere.

The honest summary is that SFP is optional. If you are buying a SafePal device to hold bitcoin offline for five years, the token has no bearing on that. If you swap frequently inside the app, the fee discount can be worth the exposure, but you are then holding a volatile asset for a rebate, which is a trade worth pricing consciously.

Nothing about the token changes the custody model. SFP sits in your SafePal wallet like any other token, protected by the same keys and the same hardware confirmation step.

SFP at a glance

Issuer
SafePal
Network
BNB Chain
Launch route
Launchpool, 2021
Main use
Fee discounts, perks
Required?
No

SEC-09 // COMPARISON

Four ways to hold the same coins

The choice is rarely SafePal against a single rival. More often it is a choice between storage models, and the same person may reasonably use two of them at once for different pots of money.

Comparison of air-gapped hardware, wireless hardware, app-only and exchange custody
Criterion SafePal S1 / S1 Pro SafePal X1 SafePal app only Exchange account
Who holds the keys You, in an offline chip You, in an offline chip You, on the phone The platform
Data channel QR only, no radio Bluetooth Internet, same device Login and password
Main risk Losing the recovery phrase Live wireless interface Phone malware or theft Counterparty failure, freezes
Speed of a transfer Slowest, two scans Fast, one press Fastest Instant internally
Best suited to Long-term holdings Active but protected use Small spending balances Trading, fiat on and off ramps

Read the last row as the actual recommendation. A common arrangement is an air-gapped SafePal device for savings, a phone-only SafePal account for day-to-day amounts, and an exchange used only when converting to or from currency.


SEC-10 // SUPPLY CHAIN

Buying a device you can trust

A hardware wallet is one of the few consumer products where the purchase channel is part of the security model. A tampered or pre-configured device defeats every chip-level protection at once, because the attacker already knows the recovery phrase before you open the box.

Before you order

Buy a SafePal device from the company's own store or an authorized reseller it names. Avoid auction listings, marketplace resellers and anything second-hand, no matter how sealed it appears, and be suspicious of prices well below the going rate.

Order to an address where a parcel will not sit unattended. Interception is a mundane attack that does not require breaking any cryptography.

When the box arrives

Inspect the packaging and any anti-tamper seal before opening, and follow whatever authenticity verification the current SafePal packaging describes. If a seal is broken, resealed or missing, stop and contact support rather than powering the device on.

The reddest flag of all is a recovery phrase supplied with the product, printed on a card or slip of paper. A genuine SafePal device generates its phrase on screen, in front of you, at first setup. A pre-printed phrase means the wallet already belongs to somebody else.


SEC-11 // SETUP SEQUENCE

How to get started, in order

The order of these steps matters more than it looks. Each one exists because people who skip it tend to lose either their funds or their access, and both failures are permanent.

  1. STEP 01

    Install the app from an official listing

    Get the SafePal app from your platform's app store or the download link the company publishes, and check the developer name before installing. Fake wallet apps are a persistent problem across the whole category, and they exist to capture recovery phrases at setup.

  2. STEP 02

    Verify and initialize the hardware

    Check the packaging, then power on the SafePal device, apply any firmware update it offers, and set a PIN you have not used elsewhere. Let the device create a new wallet so the recovery phrase is generated by its own hardware randomness.

  3. STEP 03

    Write the phrase down on paper or metal

    Copy the words in order, by hand, and confirm them on the device when prompted. Never photograph the screen, never type the words into a phone, a password manager or a cloud note, and never enter them on any website. Nobody from SafePal support will ever ask for them.

  4. STEP 04

    Pair the device and add your networks

    In the SafePal app, choose to import a hardware wallet and follow the pairing flow, which scans a QR code on air-gapped models or connects over Bluetooth on the X1. Then enable only the chains and tokens you actually use, so the interface stays readable.

  5. STEP 05

    Test with a small amount first

    Send a token amount you can afford to lose, watch it arrive, then send part of it back out so you have completed a full signing loop on the SafePal device. Only after that round trip works should the main balance move.

Optional but recommended

Before you rely on the setup, wipe the device and restore it from your written phrase once. It is the only way to prove the backup is correct and legible, and it costs ten minutes now instead of everything later.


SEC-12 // DAILY USE

Living with it day to day

Receiving is the easy half. Addresses are public, so you can copy one from the SafePal app without touching the hardware at all, and funds arrive whether or not the device is switched on. Verifying a receiving address on the device screen is still worth doing occasionally, especially for large incoming transfers.

Swaps and staking work inside the app, with the hardware confirming each transaction. Remember that in-app swaps route through outside liquidity providers, so the rate you see includes their spread on top of the network fee. For large conversions it is worth comparing against another venue rather than assuming convenience is free.

Connecting to web applications through WalletConnect or the built-in browser is where most real losses happen, and not through any fault of the wallet. Contract approvals are open-ended by nature: a signature can grant a contract ongoing permission to move a token. Read what the SafePal device shows you, decline anything you did not intend, and periodically revoke approvals you no longer need.

Firmware and app updates deserve a routine of their own. Install them from within the SafePal app or the device menu, never from a link sent by message or email, and expect no update to ever request your recovery phrase.


SEC-13 // RECOVERY

Backup and recovery, done properly

The recovery phrase generated during setup is the wallet. The SafePal device is a convenient and hardened way to use that phrase, but it is not the thing being protected. Understanding that distinction resolves most anxiety about broken or lost hardware.

Because SafePal uses a standards-based mnemonic, the same phrase reconstructs the same accounts on a replacement device, and in many other compatible wallets besides. If a SafePal signer is crushed, drowned or simply lost, buy another one, restore, and the balances reappear. If the phrase is gone, no company, support ticket or recovery service can help, because none of them ever had it.

Storage should therefore assume both theft and disaster. Keep the written phrase somewhere private and physically secure, consider a second copy in a different location so a single fire cannot end the story, and use metal rather than paper if the amount justifies it. Do not split words across locations on a whim, because homemade splitting schemes usually create a way to lose access rather than a way to prevent theft.

Finally, decide what happens if you are not around. A phrase that only you can find is a phrase your family cannot inherit. Sealed instructions with a lawyer, or a documented location known to one trusted person, turns a SafePal wallet from a personal secret into an asset that can actually be passed on.


SEC-14 // TRADE-OFFS

What SafePal does not solve

No wallet deserves an unqualified recommendation, and knowing the boundaries of a product is part of using it well. The first limit is human: SafePal cannot stop you approving a transaction you should have refused. Scams that end in a voluntary signature look identical, cryptographically, to a legitimate transfer.

The second is the breadth of the app itself. Bundling swaps, staking, a dApp browser and fiat purchases into one interface is genuinely useful, but it also means more code, more third-party services and more screens where attention slips. Users who want the smallest possible surface sometimes pair SafePal hardware with a deliberately plain interface and ignore the extras.

The third is verification depth. Air gapping removes the wireless attack surface, but you are still trusting that the firmware inside the device behaves as described, and that the chip is what the specification says. That trust is reduced by certified components and public scrutiny rather than eliminated, and it applies to every hardware wallet on the market, SafePal included.

The fourth is simply convenience. Self-custody with SafePal means no password reset, no support line that can undo a mistake and no insurance behind an error. That is the entire point, and it is also a responsibility some people should consciously decide not to take on for their whole portfolio.


SEC-15 // TERMS

Glossary of terms used above

These are the six words that carry most of the meaning in any SafePal discussion, stated as briefly as possible.

air gap
The absence of any network or data connection. On S-series SafePal devices, only QR codes cross it.
secure element
A tamper-resistant chip designed to hold secrets and perform cryptographic operations without revealing them.
recovery phrase
The ordered list of words from which all your keys are derived. Whoever holds it holds the wallet.
signing
Proving authorization for a transaction with a private key, without disclosing the key itself.
approval
Permission granted to a smart contract to move a token on your behalf, often with no expiry until revoked.
self-custody
Holding your own keys, as SafePal is designed for, rather than trusting a platform to hold them for you.

SEC-16 // FAQ

Questions people actually ask

Is the SafePal app free?

Yes. The mobile app and browser extension cost nothing to download and use, and you can run a software wallet in them without buying anything. The hardware devices are paid products, and network fees plus any third-party swap or purchase fees always apply regardless of which wallet you use.

Can SafePal access my funds or freeze my wallet?

No. This is a self-custody wallet, so the keys are generated on your device and stay there, and SafePal never holds them. The practical consequence cuts both ways: nobody can freeze your account, and nobody can restore access if you lose your recovery phrase.

What happens if my device is lost, stolen or broken?

Your coins are on the blockchain, not inside the hardware. Get a new SafePal device, or any compatible wallet, restore from your recovery phrase, and the accounts return. A thief with the device alone faces the PIN and its wipe behavior, which is why the phrase must never be stored beside it.

Do I need SFP tokens to use SafePal?

Not at all. SFP unlocks fee discounts and membership perks inside the app, but every core function of a SafePal wallet, including sending, receiving and hardware signing, works without ever holding the token.

Is air-gapped really safer than Bluetooth?

It removes a live wireless interface, which is a genuine reduction in attack surface, and that is the argument for the S-series. In both cases the key stays in the chip and you approve on the device screen, so the more important factor for most people is whether the added friction makes them careless. A SafePal X1 used attentively beats an S1 left unused in a drawer while funds sit on an exchange.

Can I use it with DeFi apps and NFTs?

Yes, through WalletConnect, the in-app browser or the SafePal extension on desktop. Each interaction still needs confirmation on the hardware, and contract approvals should be read carefully on the device before you accept them, since that is where most avoidable losses occur.

What if the company stops operating one day?

Because SafePal uses a standard mnemonic format, your recovery phrase is not locked to its software. It can be restored in other compatible wallets to reach your funds. That portability is the reason a standards-based wallet is a safer long-term bet than any proprietary account system.

Where should support requests go?

Only to the official SafePal support channels listed inside the app. Treat anyone who contacts you first, offers to walk you through a wallet migration, or asks for your recovery phrase as an attacker, because legitimate SafePal staff have no use for those words and will not request them.