Who it is for
Security teams investigating credential exposure across domains they control.
AI Connectors · Data & Analytics
Breach, paste and stealer log exposure lookups by email or domain
Overview
Have I Been Pwned holds a corpus of credentials exposed in data breaches. The connector splits into a public layer that needs nothing and an authenticated layer that needs a subscription. Public calls cover the breach catalogue itself, the data classes recorded across breaches, and the Pwned Passwords range API that answers a hash prefix without revealing the password. Authenticated calls check a single email address, return breached aliases on a verified domain, look for paste appearances, and query stealer log exposure by email, by email domain or by website domain. Domain verification is handled inside the connector, through a DNS TXT token or an email to an approved alias.
Security teams investigating credential exposure across domains they control.
All seventeen listed tools answered, and the split is legible in their own descriptions: five work anonymously, the rest state they need an OAuth bearer token or a subscription carrying stealer-log or domain-verification access. Only the three domain verification tools do anything other than read.
Availability
Have I Been Pwned is listed in the Claude connectors directory only. Have I Been Pwned has no app under the same domain in the ChatGPT directory; 392 of the 3,150 products here are on both marketplaces, and this is not one of them.
The MCP server behind a Claude connector is usually the same server a ChatGPT app would need, so the absence is a distribution decision rather than a technical one.
Claude listing
Have I Been Pwned publishes 17 tools to Claude, deeper than 64.2% of the 1,253 Claude-listed connectors.
The median Claude-listed connector filed under Data & Analytics publishes 12, so this one runs 5 tools above its bucket's median and ranks 57th of 198 by tool count.
It falls in the 11-20 tools band, which holds 22.5% of the Claude directory.
A direct call to the endpoint returned 17 tools, matching the 17 the listing publishes. Probed 2026-08-07.
hibp_list_breacheshibp_get_breachhibp_get_latest_breachhibp_list_data_classeshibp_get_pwned_passwords_rangehibp_get_breached_accounthibp_get_breached_account_rangehibp_get_paste_accounthibp_get_breached_domainhibp_list_subscribed_domainshibp_get_subscription_statushibp_get_stealer_logs_by_emailhibp_get_stealer_logs_by_website_domainhibp_get_stealer_logs_by_email_domainhibp_generate_domain_verification_dns_tokenhibp_verify_domain_verification_dns_tokenhibp_send_domain_verification_emailHave I Been Pwned publishes a remote MCP endpoint. Claude connects to it over HTTP; there is nothing to install locally.
Every connector in the Claude directory is remote, all 1,253 of them, so transport is not a differentiator there.
https://haveibeenpwned.com/mcp Have I Been Pwned carries partner verification in the Claude directory, which 474 of 1,253 listings do (37.8%). That is a review step past self-publishing, not an Anthropic-built server.
In the publisher's words
Search email addresses and domains against the world's most widely used data breach corpus. Have I Been Pwned helps individuals determine whether their accounts have appeared in known breaches and enables organisations to investigate exposure across verified domains. Explore detailed breach information, identify exposed data types, review paste and stealer log exposure, and gain trusted security intelligence to better understand account compromise and cyber risk.
Quoted from the connector's own Claude directory listing as captured in August 2026. Node8 did not write it and does not vouch for it.
Nearby
Read-only Google Ads and Shopping performance analysis
Claude · ChatGPT
Indian D2C commerce metrics across marketplaces and quick commerce
Claude
Email authentication posture and DMARC report analysis
ChatGPT
Entity resolution runbooks, SDK reference and sample data for Senzing
Claude
UK planning, land availability and title data
ChatGPT
Marketing data from more than 25 sources
ChatGPT
This is an independent catalogue entry compiled by Node8 from Have I Been Pwned's public marketplace listing as it stood in August 2026. Listing facts come from the marketplaces; the comparisons against the rest of the directory and any live-endpoint measurements are Node8's. Node8 is not affiliated with Have I Been Pwned, and inclusion here is not an endorsement.
Node8 builds MCP servers end to end: deciding which tools are worth exposing, the authentication and permission model, the review submissions, and the onboarding that gets them used. One server serves ChatGPT, Claude, and Microsoft Copilot.