Breach monitoring · Desktop app

Enhanced HIBP Checker

A Python desktop app that checks email addresses and usernames against the Have I Been Pwned breach database, checks whether a password has appeared in known breaches without ever sending it, and gives prioritized security advice from an AI model running locally through Ollama. Any installed model works. I recommend Google's Gemma 4 E4B, which gave the most accurate advice when I tested five models on an account found in three breaches.

Screenshots

The breach check uses one of HIBP's official test accounts and its public test API key. The advice comes from gemma4:e4b running locally in Ollama. Click a screenshot to open it full size. Use the arrows, or select the gallery and press ← →.

How it works

  1. Breach Check: looks up an email address or username with the HIBP API and lists each breach, its date, the number of accounts affected and the kinds of data exposed.
  2. Password Check: hashes the password with SHA-1 on your computer and sends only the first 5 characters to Pwned Passwords, then matches the rest of the hash locally.
  3. AI Advisor: chats with a model running in Ollama, gives prioritized advice for your breach results, remembers the conversation, streams responses and can be stopped at any time.
  4. Responsive UI: every network request runs in the background, so the window never freezes.

Security decisions