thewhiteh4t/pwnedOrNot
OSINT Tool for Finding Passwords of Compromised Email Addresses observed · 2026-08-28
Health v2 · maintenance only
66/100
- Activity 74
- Release rhythm 35
- Longevity 100
Flags: no_releases
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3022
- days_rel: n/a
- days_push: 158
- n_releases_24m: 0
Adoption not part of the score
2628 stars · 346 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
pwnedOrNot is a Python command-line OSINT tool that checks email addresses against the HaveIBeenPwned v3 API for past breaches and then searches public dumps for exposed passwords. It reports breach details such as breach name, domain, date, and verification status.
Use cases
- check if an email address has been compromised in a data breach
- find passwords for breached email accounts in public dumps
- bulk-check a list of emails for breaches
- investigate breach details like date and verification status during OSINT recon
- filter breach lookups by domain
When to choose
- you need a quick CLI-based breach and password lookup for email addresses
- you are doing OSINT or security assessments on Kali, BlackArch, or Termux
- you already have a HaveIBeenPwned API key
When to avoid
- you don't have a paid HaveIBeenPwned v3 API key
- you need a GUI or web-based breach checker
- you expect guaranteed password recovery, since dumps may be missing or inaccessible
- you run Windows natively without WSL2 or a VM
Facets
cli-tool · maturity active
osint security search-engine cli security osint penetration-testing privacy cli python haveibeenpwned password-dumps breach-checker email-lookup cybersecurity linux docker
1 source
- readme: https://github.com/thewhiteh4t/pwnedOrNot · fetched 2026-08-28 · 803857dcec0d
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| thewhiteh4t/pwnedOrNot | main | 66 |
For agents
markdown · JSON · MCP: product_card(name="thewhiteh4t/pwnedOrNot")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem