SafePal
Best for verifiable firmware openness
How it rates
- Firmware source published in a public repository
- Device security or specification page published
- Technical documentation reachable without an account
- No dedicated security or audit disclosure identified at this check
- Terms page not found at the conventional address at this check
Each indicator scores 2, 1 or 0. A pillar is the points earned over the points available; the overall score is the weighted sum. Every source below is public — check any of them yourself.
- MetFirmware source published in a public repository
Vendor repository reachable at this check.
github.com/SafePalWallet - MetDevice security or specification page published
Security or specification page reachable at this check.
www.safepal.com/en/x1 - Not metIndependent security research or audit programme published
No published security research or audit programme identified at this check.
- MetTechnical documentation reachable without an account
Documentation open at this check.
www.safepal.com/en/products - MetVendor organisation identifiable from the repository
Repository published under the vendor organisation (SafePal).
github.com/SafePalWallet
- Met
- Met
- Not metLegal or terms page public
Not found at the conventional address at this check.
- Met
- MetPurchase information viewable without an account
No account required to reach the shop at this check.
www.safepal.com/
- Met
- Met
- Met
- MetDocumentation site separate from marketing
Dedicated documentation or support resource published.
www.safepal.com/en/products - Met
- Met
- Met
- Not metSecurity or disclosure page published
Not identified at this check.
- Not metTerms or legal documentation published
Not found at the conventional address at this check.
- Met
- Met
- Met
- Met
- Met
- Not metLegal documentation reachable
Not found at the conventional address at this check.
The lowest-priced genuinely air-gapped device in this comparison, signing entirely by QR code with support for a very wide range of tokens.
Our assessment
SafePal S1 is the cheapest genuinely air-gapped device in this table. There is no USB data connection, no Bluetooth, no Wi-Fi and no NFC — the wallet talks to the mobile app entirely through QR codes, at a price closer to a phone case than a security product.
Air-gapping at an entry-level price
Isolation is normally something you pay for: Passport, NGRAVE and Keystone all charge a premium for it. SafePal delivers the same architectural property on a budget device, which matters because the realistic alternative for a small holding is no hardware wallet at all. On a risk-per-dollar basis this is the strongest value in the category.
Coverage over depth
Support runs past 10,000 tokens with a colour screen and a workable battery, and the S1 Pro adds an aluminium case and tempered glass for a higher price. The proposition is breadth and convenience rather than the auditability of a Trezor or the chip redundancy of a OneKey.
Where it sits on openness
A firmware repository is published under the vendor organisation and specification documentation is reachable, but we found no independent security research programme and no legal terms at a conventional address. Binance Labs backing gives the company a visible corporate parent, which several competitors here lack.
Who it suits
SafePal fits first-time buyers and holders of modest balances who want real air-gapped signing without spending three figures. Anyone securing a large balance should weigh the deeper audit trails at Trezor, Coldcard, BitBox or OneKey.
How rivals compare
| Service | Score | Best for | |
|---|---|---|---|
| Trezor | 9.9 | verifiable firmware openness | Read → |
Frequently asked
Does this score mean SafePal is secure?
No. It measures what a buyer can verify before purchase: published firmware source, documented security claims, and open documentation. Physical security is not tested by us and is not scored.
Why does firmware openness matter so much here?
It is the one substantive security property an outsider can check without specialist equipment. Everything else on a hardware wallet requires trusting the vendor or a third-party teardown.
What would raise this score?
Publishing firmware source, a dedicated security or audit page, and open technical documentation at stable public addresses — all of which are checkable by anyone.