
Have I Been Pwned
Free check of whether your email or domain has appeared in data breaches.
Price
Nonprofit offer
Available in
Suits
Great for
- Any nonprofit wanting early warning that staff emails are in breaches
- Organisations wanting to find reused or compromised passwords
- Free and trusted
- Easy to set up domain alerts
- Shows real exposure
Watch out for
- Teams wanting a full security product
- Large organisations needing API access without paying
- Alerts only; does not fix problems
- Free domain monitoring has a 10-address limit
- Needs control of your domain to verify
Problems it solves
About Have I Been Pwned+
Have I Been Pwned lets anyone check whether an email address has appeared in a known data breach. Organisations can add their domain to get notified when staff email addresses show up in a breach; this is free while a domain has up to 10 breached addresses. It is run by security researcher Troy Hunt.
Pricing: Free email search, notifications and domain monitoring (up to 10 breached addresses). Paid Core plans start at US$4.39 per month; Pro plans start at US$379 per month for organisations monitoring many domains.
Key features+
Data & privacy+
Operated by Superlative Enterprises Pty Ltd (Australia). Searching reveals only whether an address was in a breach; privacy-preserving k-anonymity password checks are offered.
How sure are we?+
Prices and offers confirmed on the vendor's own pages. Prices and nonprofit programs change often, so check with Have I Been Pwned before you commit. Rankings on Nonprofit Tools are never for sale.
Alternatives
All cybersecurity & it →Bitwarden
Specialist
Open-source password manager with a free plan and low-cost team plans.
1Password
Specialist
Easy-to-use team password manager with a nonprofit programme worldwide.
Is Have I Been Pwned right for you? Ask your AI
Opens with this shortlist ready, so your assistant can help you decide.