Have I Been Pwned

First-party

Check authorized accounts and verified domains against known breaches and stealer-log exposure.

4 actions First-party pack
Request access
Connect Have I Been Pwned once you're in Boring.
01 · WHAT THE AGENT CAN DO

Actions

Every capability is a discrete, logged action the agent calls by name — scoped to what you authorize and recorded in the run trace.

Look up breached accountcustom_hibp_breached_account
Return breaches for an account identifier. This sends the full email address, username, or phone number to Have I Been Pwned. Use it only when the account owner has consented or the workspace is otherwise authorized to monitor that account. By default it returns breach names only. Attribute all results to Have I Been Pwned.
Breaches for a verified domaincustom_hibp_domain_breaches
Return breached email aliases and breach names for a domain the workspace controls. The domain must already be verified in the connected HIBP account; do not use this to investigate third-party domains. Results may include sensitive breaches. Attribute all results to Have I Been Pwned.
Breach detailscustom_hibp_breach_detail
Return public metadata for one named breach, including its title, dates, affected domain, scale, and exposed data classes. Use the stable breach Name from another HIBP result, and attribute the result to Have I Been Pwned.
Stealer-log exposure by emailcustom_hibp_stealer_logs
Return website domains where an email address appeared in HIBP's stealer-malware logs. This sends the full email address to HIBP and requires Pro or higher. The email's domain must already be verified in the connected HIBP account. Use only with the account owner's consent or other documented authorization, handle results as sensitive, and attribute them to Have I Been Pwned. This never returns captured passwords.