Terms
Terms grounded in the product that exists.
What the service does, what a result means, and the conditions for using it. No clause here describes a capability or a commitment the product does not have.
The service
Compromised accepts email address, username, full name and IPv4 or IPv6 searches, sends the submitted value to a breach intelligence provider, and returns a normalized result. Accounts receive an encrypted private history and capabilities determined by their current plan. It also offers a password exposure check, which never transmits the password.
Accounts and access
Sign-in uses a one-time email link or a connected third-party identity. There is no password on your account. You are responsible for controlling whichever mailbox or identity you use to authenticate.
Signing in does not by itself grant searches. There is no free tier. Running a search requires an active plan allowance or purchased credits. Allowances, result detail, revealing a stored value and billing management are all enforced on the server, and a request may be refused when a limit is reached, access has changed, a security check fails, or a dependency is unavailable.
What a result means
- Searches are point-in-time requests, not continuous monitoring, saved alerts, or a guarantee of future detection.
- A zero result means only that the provider returned no match for that request. It does not prove an identifier has never been exposed.
- Provider responses may be unavailable, incomplete, truncated, outdated, or wrong in either direction. Compromised preserves those uncertainty states rather than converting them into a safety claim.
- The product does not reveal raw leaked passwords or credential values. Results are normalized, and what you can see is decided by your plan on the server.
Results are informational security signals. Do not treat them as proof of identity, wrongdoing, current account compromise or safety, and do not use them as the sole basis for a consequential decision about another person.
Acceptable use
- Submit only an identifier you own or are otherwise authorized and legally permitted to check.
- Do not submit passwords, access tokens, sign-in links, payment card data, raw leaked credentials, or illegal content. Use the password exposure check for a password; it is built so the password never reaches us.
- Do not bypass authentication, entitlement checks, abuse protection, rate limits, or other security boundaries.
- Do not automate abusive traffic, probe the service or its providers, interfere with other users, or use results to harass, discriminate against, impersonate, or harm another person.
Billing
Plans, prices and allowances are published on the pricing page, which reads them from the live catalog. Confirm the price on the payment provider's checkout page before authorizing payment.
Billing frequency and allowance period are separate. A plan billed annually can still carry an allowance that resets monthly, and the pricing page states which applies. Your recurring allowance is always spent before any purchased credits, so an allowance that resets is never wasted.
Checkout and subscription management are hosted by the payment provider, which holds the payment relationship. Access changes only after a signed billing event has been verified, which can take a moment after checkout returns. Purchased credits belong to a separate balance and are not removed when a subscription ends; a refunded credit purchase reclaims what remains of that purchase.
No refund window, cancellation notice period, tax representation or regional consumer-law statement is asserted here, because none is defined by the product.
Privacy and security
Running a search means sending the exact value to this application and to a breach intelligence provider. Read the privacy notice and the security model before you do.
Changes and contact
Product behaviour and these terms can change as the application evolves. There is no promise of individual email notice for every change. Questions about access, billing or use go through the contact form — without including a credential.
Contact Compromised