BreachCheck par Pixelvault Labs
Check if a password has appeared in known data breaches â privately, using k-anonymity. Includes a secure password generator and strength meter. Nothing you type ever leaves your device.
MĂ©tadonnĂ©es de lâextension
Captures dâĂ©cran
Ă propos de cette extension
BreachCheck â has your password been breached?
Billions of passwords have leaked in data breaches. If yours is one of them, attackers can log in as you anywhere you reused it. BreachCheck tells you in one click â without ever exposing your password.
PRIVATE BY DESIGN (K-ANONYMITY)
Your password is hashed with SHA-1 on your device, and only the FIRST 5 characters of that hash are sent to the free HaveIBeenPwned Pwned Passwords API. The API returns ~800 candidate hashes; your device compares them locally and reports the result. The password â and even the full hash â never leaves your device. It is never stored, and the field is cleared after every check.
WHAT YOU GET
- One-click breach check against 15+ billion breached passwords
- Password generator: 12â32 characters, cryptographically random (crypto.getRandomValues), numbers/symbols toggles, click-to-copy
- Local strength meter: entropy-based, no libraries, no network
- Check history: date + outcome only (never the password), clearable
HONEST WORDING
"Not found" means no known breach contains the password â it is not a guarantee of safety. We never claim a password is "safe".
PERMISSIONS â MINIMAL
- storage: keeps your check history (outcome only) on your device.
- api.pwnedpasswords.com: the anonymous 5-character hash-prefix lookup.
No content scripts. No page access. No remote code. No accounts, no tracking, no analytics.
Free forever. Made by Pixelvault Labs.
Billions of passwords have leaked in data breaches. If yours is one of them, attackers can log in as you anywhere you reused it. BreachCheck tells you in one click â without ever exposing your password.
PRIVATE BY DESIGN (K-ANONYMITY)
Your password is hashed with SHA-1 on your device, and only the FIRST 5 characters of that hash are sent to the free HaveIBeenPwned Pwned Passwords API. The API returns ~800 candidate hashes; your device compares them locally and reports the result. The password â and even the full hash â never leaves your device. It is never stored, and the field is cleared after every check.
WHAT YOU GET
- One-click breach check against 15+ billion breached passwords
- Password generator: 12â32 characters, cryptographically random (crypto.getRandomValues), numbers/symbols toggles, click-to-copy
- Local strength meter: entropy-based, no libraries, no network
- Check history: date + outcome only (never the password), clearable
HONEST WORDING
"Not found" means no known breach contains the password â it is not a guarantee of safety. We never claim a password is "safe".
PERMISSIONS â MINIMAL
- storage: keeps your check history (outcome only) on your device.
- api.pwnedpasswords.com: the anonymous 5-character hash-prefix lookup.
No content scripts. No page access. No remote code. No accounts, no tracking, no analytics.
Free forever. Made by Pixelvault Labs.
Noté 0 par 1 personne
Autorisations et données
Autorisations facultatives :
- Accéder à vos données pour api.pwnedpasswords.com
Collecte de données :
- Le dĂ©veloppeur indique que cette extension nâa pas besoin de collecter de donnĂ©es.
Plus dâinformations
- Liens du module
- Version
- 1.0.0
- Taille
- 41,02Â Ko
- DerniĂšre mise Ă jour
- il y a 5 jours (27 sept. 2026)
- Catégories associées
- Licence
- Tous droits réservés
- Politique de confidentialité
- Lire la politique de confidentialité de ce module
- Historique des versions
- Ajouter Ă la collection