Data Breach Lookup & Breach Check

Run a free breach check to see whether your email, username, or password has surfaced in a known data breach. Results come from known breach datasets and return in seconds.

Free to start · 800+ platforms · results in seconds

Sample breach result Sample
Emailj••••@gmail.com
Breaches found4
Exposed dataPassword, username, IP address
Latest breachCollection #1 (2019)

Values partly hidden. Run a search to see full results.

What a data breach lookup checks

A data breach lookup compares the email, username, or password you enter against records exposed in past data breaches. It shows which leaks an identifier turned up in and what was exposed alongside it, such as passwords, usernames, phone numbers, or other account details. The point of a breach check is to surface where your own information is already public so you can lock down accounts before that exposure is used against you.

How a breach check works

A breach check runs your identifier through a searchable index of known leaks rather than scanning the live web. When you enter an email or username, the data breach search matches it against those datasets and returns the breaches it appears in. A good data breach checker also tells you what type of data was exposed in each one, so a match on an old forum leak reads very differently from a match that exposed a password you still reuse.

What to do if you have been breached

If your email turns up in a data breach, change the password on that account and on any other account where you reused it. Turn on two-factor authentication wherever it is offered. A password manager makes it easier to keep a unique password for every login, so a single leaked credential does not put the rest of your accounts at risk.

Check before attackers do

Breached credentials are traded and reused long after the original leak goes public. Running a breach check on your own email and usernames lets you find exposed accounts before someone else does. Repeating the lookup periodically helps you catch new breaches as they are indexed and added.

Types of data exposed in breaches

Breaches expose different fields depending on what the company stored. Common ones include email addresses, passwords, phone numbers, and physical addresses. Leaked passwords matter most because they are so often reused, so one exposed password can unlock several of your other accounts. A data breach checker tells you which of these fields showed up alongside your identifier so you know exactly what to rotate.

Data breach vs info stealer logs

Two kinds of exposure show up in a lookup. A normal data breach is a single company leaking its stored records, so the exposure is tied to one service. Info stealer logs are different: they come from malware running on your own device and capture whatever was on it, including saved passwords and active session cookies. Because stealer logs include session cookies, they can let someone into an account even without the password.

How often should you run a breach check?

New breaches surface continually, so a single lookup only reflects what was known that day. Asking "have I been breached" once is not enough. A recurring email breach check beats a one-time search because it catches leaks that appear after you last looked, which is why ongoing breach monitoring is worth setting up once you have run your first check.

Frequently asked questions

Enter your email address in the search box above. The data breach lookup checks it against known breach datasets and shows you which leaks it appeared in and what was exposed in each one.

Related reading

More tools

Create account