Security is the product
A bank is only as good as the trust it keeps. Here is exactly how we protect your money and your data.
Defence in depth, by default
Encryption
TLS in transit and AES-256 at rest. Sensitive fields are encrypted at the application layer.
Multi-factor auth
A second factor is required on sign-in, with device tracking and full login history.
Continuous monitoring
Transactions and sessions are screened in real time for anomalies and known fraud patterns.
Audited ledger
Every transaction writes an immutable audit record — nothing changes without a trace.
We assume the worst so you don't have to
- Step-up verification for high-value transfers
- Instant card freeze and per-channel limits
- Rate limiting and lockout on suspicious sign-in attempts
How you can protect yourself
PaalBank will never ask for your password, PIN or full card number by phone, email or SMS.
Keep credentials private
We will never ask for your password or one-time code. Anyone who does is not PaalBank.
Verify the channel
Type the address yourself and check for the padlock. Do not follow links in unexpected messages.
Read your alerts
Every credit, debit and sign-in triggers an alert. If you did not do it, tell us immediately.
Use a strong, unique password
Combine length and unpredictability, and never reuse your banking password elsewhere.
Think something's wrong? Act now.
Time matters with fraud. Reach our security desk directly, 24 hours a day.