Vault Monitoring
Alert password-manager users when stored credentials show up in newly leaked data.
Password breaches · 1 credit per lookup · no monthly fee
How it works
One call, structured answer
Vault Monitoring runs on the password breaches lookup at 1 credit per lookup. Same API key, same JSON shape as every other Encrata lookup.
- k-anonymity: the password never leaves the user's device
- Blocks the exact credentials attackers use in stuffing lists
- 1 credit per check, screen every registration and reset
- A single API call satisfies auditors asking for compromised-password controls
Check without exposing
Check entries via k-anonymity on the client: hash locally, send the 5-character prefix, match the suffix on-device. The vault's contents never leave the machine in any reversible form, which is the property your marketing can and should state precisely. Re-screen on a schedule and badge newly-breached entries.
The vault keeps its promise
A vault that flags 'this credential appeared in a breach, rotate it' delivers the promise users bought: not just storage, but stewardship. Prioritize the rotation prompts by the count field, a password seen fifty million times is a different emergency than one seen twice, and pair each flag with the site's change-password deep link to make rotation one tap.