SafeRemit Borderless
Security

The boring safeguards,
described plainly.

No badges we haven't earned. Here is what actually stands between an attacker and your balance, and what we ask of you in return.

Your account

Getting in, and getting money out, are two different locks

Signing in proves who you are. Releasing money proves you meant to. We deliberately keep those separate, so a phone left unlocked on a desk is not the same thing as a drained account.

A hashed transaction PIN

Every outbound transfer needs your six-digit PIN. It is stored hashed, so nobody at SafeRemit can read it, and it never travels in a form that could be replayed. Repeated wrong attempts lock transfers for a cooling-off period instead of letting an attacker keep guessing.

Biometric unlock, opt-in

On mobile you can unlock the app with the fingerprint or face recognition your device already trusts. It never replaces the PIN on a transfer. It just saves you retyping a password to look at your balance.

Devices you can see and revoke

Each browser and phone that signs in is recorded with its approximate location and last-used time. If you don't recognise one, revoke it from Profile → Devices and that session stops working immediately.

One-time codes on the way in

Email and phone are confirmed with short-lived one-time codes at sign-up, and again for a password reset. Codes expire quickly and are single-use.

Encrypted in transit

The app, the website and the API are served over TLS only, with plain HTTP redirected. Session cookies are restricted to our own site, and every state-changing form carries a CSRF token.

Backed up, and tested

The production database is backed up on a rotating schedule to storage separate from the application, so an incident on the app host does not take your transaction history with it.

Invoice fraud

The attack we care most about

Very few people lose money to a broken password. They lose it because an invoice arrived with the account number changed, from an address one character different from their supplier's.

Borderless is built around that. The send flow reads the bank details off the document rather than asking you to retype them, shows each extracted field back to you, and requires you to confirm they match what your supplier sent. Check that on a channel you already trust, not by replying to the email the invoice came from.

Before you approve What the app makes you check
Beneficiary name
Matches the supplier
Bank & SWIFT
Confirmed off-channel
Account number
Unchanged since last invoice
Amount
Matches the order
Compliance

Who we have to know, and why

Moving money across borders is a regulated activity. We've put that in plain view in the product instead of burying it. The summary below is the short version; our AML, CFT and KYC policy is published in full.

Verification before outbound transfers You can open an account and receive money without verifying. Sending to a third party requires identity verification. For an individual that is ID and an address; for a business, the full company file.
Reviewed by people Submissions are assessed by our compliance team. Nothing is auto-approved on a document scan, and a rejection comes with the reason attached.
Settlement through licensed partners Payouts in each corridor are executed by regulated partner institutions. We open a corridor only once that partnership is in place.
Records kept, access limited Verification documents are retained to meet record-keeping obligations, and are reachable only by the compliance staff who need them. They are never displayed back in the app or shared with other customers.
Your part

Four habits that matter more than anything we ship

Confirm details off-channel

Before a first payment to any supplier, confirm the bank details by phone or a chat you already use. Never by replying to the email carrying the invoice.

Keep the PIN out of the password manager

Different from your password, not written next to it, and not shared with anyone, including anyone claiming to be us. We will never ask for it.

Check your devices list

Glance at Profile → Devices now and then and revoke anything you don't recognise, especially after using a shared or public computer.

Tell us fast

If a transfer you didn't start shows up, or a sign-in you don't recognise, contact us immediately. Speed is what decides whether funds can be recalled.

Responsible disclosure

Found a vulnerability?

Please tell us before it becomes an incident. Email [email protected] with enough detail to reproduce the issue and we'll acknowledge it.

Please give us a reasonable window to fix the problem before disclosing it publicly, and don't access, modify or delete data belonging to anyone else while investigating. Testing that degrades the service for other customers isn't something we can treat as research.

Ready to start sending?

It takes a few minutes. You can top up and receive from the start, and verify when you're ready to send money out.