Have I Been Pwned
Have I Been Pwned (HIBP) is a data breach search and notification service used by security teams, developers, and MSPs worldwide. Search tens of billions of breached records, monitor corporate domains via API, and get alerted when new breaches appear.
https://haveibeenpwned.com/Opens ChatGPT on the web or desktop and asks it to use the WebMCP tools available here.
Connect straight to this server’s public endpoint.
https://haveibeenpwned.com/mcpWe add this server to your workspace, then open Studio — saved access, one connection to many servers, with a history of what ran.
Last probed Sep 14, 2026 · haveibeenpwned.com
17tools discovered
Have I Been Pwned - Breaches
List public HIBP breaches, optionally filtered by domain, spam-list flag, and verification status.
Have I Been Pwned - Breach
Look up a single public HIBP breach by its canonical breach name, such as Adobe.
Have I Been Pwned - Latest Breach
Return the most recently added public breach currently loaded into HIBP.
Have I Been Pwned - Data Classes
List the data classes used across public HIBP breach models, such as email addresses or passwords.
Pwned Passwords Range Search
Query the public Pwned Passwords k-anonymity API with a 5-character SHA-1 or NTLM prefix and return matching suffixes with prevalence counts.
Have I Been Pwned - Breached Account
Search HIBP for breaches affecting a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; use domain and verification filters to refine the result.
Have I Been Pwned - Breached Account Range
Query the authenticated HIBP k-anonymity breached-account range endpoint with the first 6 characters of a SHA-1 email hash. Requires a subscription with k-anonymity access; compare each returned suffix with the remaining hash characters locally because a prefix alone cannot identify an account.
Have I Been Pwned - Paste Account
Search for public pastes containing a single email address. Requires an OAuth bearer token linked to an active HIBP API subscription; run this separately from breached-account lookup.
Have I Been Pwned - Breached Domain
Return breached aliases for a verified domain. This tool requires an authorized subscription via OAuth bearer token.
Have I Been Pwned - Subscribed Domains
List the domains associated with the authenticated HIBP subscription.
Have I Been Pwned - Subscription Status
Return the current plan, quotas, rate limits, expiry, and feature flags for the active HIBP API subscription linked to the authenticated OAuth connection. Use it to confirm access before feature-dependent lookups.
Have I Been Pwned - Stealer Logs by Email
Return website domains historically observed in stealer logs for an email address. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.
Have I Been Pwned - Stealer Logs by Website Domain
Return email addresses historically observed in stealer logs for a website domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.
Have I Been Pwned - Stealer Logs by Email Domain
Return email aliases and associated website domains historically observed in stealer logs for an email domain. Requires an OAuth-linked active subscription with the stealer-log feature; results do not establish current account access.
Have I Been Pwned - Generate Domain Verification DNS Token
Generate the TXT record value required to verify domain control via DNS, creating or reusing the private HIBP domain-verification records needed for the request. Requires an authenticated subscription with domain-verification access.
Have I Been Pwned - Verify Domain Verification DNS Token
Complete domain verification by checking the expected HIBP TXT record on the target domain. Requires an authenticated subscription with domain-verification access.
Have I Been Pwned - Send Domain Verification Email
Send a domain verification email to an approved alias such as admin or security. Requires an authenticated subscription with domain-verification access.
Get your MCP into directories
A working endpoint is step one. Directory coverage is the coordinated launch across ChatGPT, Claude, Cursor, the MCP Registry, and community indexes.
Directory coverage for brandsHave I Been Pwned (HIBP) is a data breach search and notification service used by security teams, developers, and MSPs worldwide. Search tens of billions of breached records, monitor corporate domains via API, and get alerted when new breaches appear.
Use the MCP endpoint listed on this page in your MCP client configuration. One-click install pills support Claude, Cursor, VS Code, and other hosts. Copy the remote MCP URL if your client needs a manual entry.
Operate Have I Been Pwned? Verify ownership to take over this directory entry.
This server appears in the MCPBundles directory. Verify you operate it to take over the listing — name, description, logo, contact email, and skill content. We email a 6-digit code to a maintainer address your server publishes in /.well-known/security.txt or /.well-known/mcpbundles.json. Free, takes about a minute.
Other MCP servers in this category from the directory index
MCPBundles probed 17 tools on the live server. The tool list on this page reflects what was discovered at the last refresh — connect your client to see the full set available to your session.
No provider sign-in was required during MCPBundles' probe. Your client may still need MCPBundles credentials depending on how you connect.
MCPBundles is an independent platform built on the open Model Context Protocol standard. Not affiliated with Anthropic PBC or Claude.