Keep an eye on the addresses that matter most.
Monitor specific email addresses, from individual accounts to sensitive roles, and receive notifications when matching records are found.
Create a free account to start investigating.
A monitored address appears in a leak
Review the context before deciding what to do next.
Investigate the exposed records, with the data to act.
File lines, not a count of unique accounts.
UpdatedPlaintext passwords, with their account context
Inspect the exposed password alongside the account and, for stealer logs, its service URL. When the source includes plaintext, that detail helps your team scope password resets and investigate exposed access.
Compare plans for plaintext access and included unlock points.
Stealer logs
Connect a captured login to its service URL, username and password to understand which access is exposed.
url:user:passCombolists
Find email/password and username/password pairs, including records without a service URL.
email:passuser:passRaw leak files
Search the text of leaked files, database dumps and unstructured records beyond normalized credential fields.
Dark web forums
Search indexed forum posts for mentions of your organization and examine the discussion's source context.
Get notified via Email, Slack, Discord, Telegram or Webhook when new exposed credentials match your monitored domains or email addresses.
Some addresses deserve their own watchlist.
Finance, administrators and business owners often use several online services. A focused list helps you follow these addresses without starting with every domain in the organization.
Choose the addresses first, then decide who should review their alerts.
A focused watchlist, a repeatable review
- 01
Select the addresses
Sign in and add the addresses covered by your plan. Keep the list aligned with your actual responsibilities.
- 02
Choose the alert channel
Configure the available destinations so the person responsible can receive and review matches.
- 03
Examine the match
Look at the account and service involved. Use that context to decide on further checks.
What you can work with
Access that fits your work
Start with a free account, then choose the plan that fits your datasets, monitoring, exports and team.
Compare plansAddress-level scope
Follow an individual address, including one on a shared email provider, without monitoring the provider's whole domain.
Monitoring you can maintain
Manage your monitored addresses in the member area as people, roles and responsibilities change.
Context beyond an email
Where the source provides it, examine the associated service and credential record before escalating.
Before you get started
How is this different from domain monitoring?
Email monitoring follows selected addresses. Domain monitoring covers matches associated with a company domain and is better suited to a broader perimeter.
What can a free account monitor?
The free account can monitor its signup email in Stealer Logs, with notifications sent to that address. Additional assets, datasets and notification channels depend on a paid plan.