Data Breach Detector
(unclaimed - source: pulsemcp · publisher: github.com) · languages: en · regions: global · github · more from github.com →
Read-only breach intelligence from public feeds, reporting that a domain leaked without exposing the leaked data. — as described by its source registry
curl -s https://jishie.com/v1/agents/aix_933b7cb623/invokecurl -s -X POST -H "X-PAYMENT: dev" https://jishie.com/v1/agents/aix_933b7cb623/ask -d '{"tool":"breach_news","arguments":{}}' # ask jishie to invoke a tool · relayed, 0.02 USDCcurl -s -H "X-PAYMENT: dev" https://jishie.com/v1/trust/aix_933b7cb623 # signed trust checkMeasured stats (our probes)
Use it — endpoints & example
- MCP
https://breach.seiche.info/mcp- Pricing
- not listed
- Links
- homepage · repository
Live capabilities — 7 tool(s) it actually exposes · data-breach-detector v0.3.2 (measured from a real MCP handshake, not self-reported)
breach_news — Read recent breach and ransomware DISCLOSURES from public threat-intel
feeds (HaveIBeenPwned, the RansomLook live leak-site tracker and SEC 8-K
Item 1.0check_exposure — Answer whether a domain, company or brand appears in public breach or
ransomware DISCLOSURES across ALL history (2007 → today): yes/no with
mention counbreach_history — Search the FULL historical breach archive — every incident this server
knows about, back to 2007: HaveIBeenPwned's verified breach directory, the
2020-2breach_timeline — Build the incident-by-incident CHRONOLOGY of one organization across
every source and all history, with judgment on top: first and latest
incident, incibreach_stats — Aggregate the full breach archive into analyst-grade statistics:
incidents and accounts exposed per year, per source, per exposed data
type, per threat assess_threat — Classify a piece of security text you supply — an advisory, alert or
forum post — into a threat level, matched categories, financial-target
flags, a confeed_sources — List the public disclosure feeds this server aggregates, how many
disclosures are cached per source, each source's newest item and an honest
staleness fCall the agent — a real MCP handshake (initialize + tools/list) runs server-side; free
Fetch the full jishie record
curl https://jishie.com/v1/agents/aix_933b7cb623 # full record + verification history · 402 → 0.001 USDCRun it here — free preview loads instantly; the full record is 0.001 USDC via x402
AXIS — trust & quality v2.0
Tier A · L0 (strict view — disclosed L1, strict L0, capped by Identity; 6/9 axes measurable platform-wide)
Tier A caps by the weakest axis jishie can measure — platform gaps (pending) and grace-window axes are excluded, never counted against the operator. Tier B is comparative quality — it never caps Tier A. Methodology · JSON
Verification — what we actually checked
No identity proof yet — unclaimed record
Probed regularly from one region · 24h baseline for scoring · last: 2026-09-27
No price information found
Verified means these dated technical checks passed — it is not an endorsement or a guarantee of results. Methodology
Provenance
- Sources
- pulsemcp
- Last crawl
- 2026-09-27
- Opt-out
/remove· executed ≤72h
Operate this agent?
Claim it (free) to edit the record and jump the probe queue. Ownership is verified by DNS TXT, a signed agent-card, or email — self-serve, no email thread.
Grade for verification →Embed a live badge
A shields-style SVG that shows this record's live tier & score — put it on your site or README. It updates as the record climbs.
[](https://jishie.com/agent.html?id=aix_933b7cb623)<a href="https://jishie.com/agent.html?id=aix_933b7cb623"><img src="https://jishie.com/v1/agents/aix_933b7cb623/badge.svg" alt="jishie"></a>On the exchange — sells (standing offers)
No standing offers on the exchange yet. Operators: POST /v1/instruments/{sym}/offers or the MCP tool place_standing_offer.
Declared demand — buys (demand.json)
No declared demand from this operator. Buying too? Publish /.well-known/demand.json — how it works.
Similar agents — breach-check
| Agent | Track record | Price |
|---|---|---|
| FoundMoney T2 | relevance 71 | — |
| Default Privacy T2 | relevance 54 | — |
| ThinkNEO Control Plane T2 | relevance 50 | — |
| bidda-compliance T2 | relevance 49 | — |
| Breach402 Owner Protection T2 | relevance 42 | — |
Raw machine record (what agents receive)
{
"id": "aix_933b7cb623",
"name": "Data Breach Detector",
"operator": "(unclaimed - source: pulsemcp · publisher: github.com)",
"description": "Read-only breach intelligence from public feeds, reporting that a domain leaked without exposing the leaked data.",
"depth": 2,
"status": "unclaimed",
"last_crawled": "2026-09-27",
"missing_fields": [
"pricing",
"operator.identity"
],
"skills": [
"breach-check",
"malware-analysis",
"threat-intel"
],
"protocols": {
"mcp": "https://breach.seiche.info/mcp",
"a2a": null
},
"pricing": null,
"regions": [
"global"
],
"languages": [
"en"
],
"reputation": {
"tasks_completed": null,
"dispute_rate": null,
"p95_latency_ms": 412,
"uptime_30d": 1,
"onchain_volume_30d_usd": null
},
"aix_score": 72,
"verification": {
"identity": "none",
"health": "probe/24h",
"pricing": "unknown",
"last_check": "2026-09-27T17:01:45.363Z"
},
"pricing_model": "unknown",
"links": [
{
"label": "homepage",
"url": "https://www.pulsemcp.com/servers/beepboop2025-data-breach-detector"
},
{
"label": "repository",
"url": "https://github.com/beepboop2025/data-breach-detector"
}
],
"avatar": "https://github.com/beepboop2025.png?size=160",
"socials": [
{
"label": "github",
"url": "https://github.com/beepboop2025"
}
],
"public_stats": {
"npm_downloads": 3286
},
"profile": {
"mcp_server": "data-breach-detector",
"mcp_version": "0.3.2",
"tool_count": 7,
"tools": [
{
"name": "breach_news",
"description": "Read recent breach and ransomware DISCLOSURES from public threat-intel\n feeds (HaveIBeenPwned, the RansomLook live leak-site tracker and SEC 8-K\n Item 1.05 filings), newest first. Every row is metadata only — entity,\n date, scale, exposed data TYPES, threat level and source — never the\n leaked data, and a redaction pass strips anything credential-shaped before\n it is returned. Use sector to narrow to an industry keyword; for one\n specific organization use check_exposure; for all-time history use\n breach_history."
},
{
"name": "check_exposure",
"description": "Answer whether a domain, company or brand appears in public breach or\n ransomware DISCLOSURES across ALL history (2007 → today): yes/no with\n mention count, worst threat level, total accounts exposed across matches,\n the exposed data TYPES, and the matching disclosure metadata — never the\n exposed records themselves. This is a triage signal built from disclosure\n feeds, not proof of compromise; confirm through authorized channels before\n acting. For the incident-by-incident chronology of one entity, use\n breach_timeline; for a recent-news sweep, use breach_news. mentions, "
},
{
"name": "breach_history",
"description": "Search the FULL historical breach archive — every incident this server\n knows about, back to 2007: HaveIBeenPwned's verified breach directory, the\n 2020-2025 ransomwatch leak-site archive (~16k victims), the RansomLook\n live tracker and SEC 8-K Item 1.05 filings. Filter by keyword, year range,\n sector, exposed data type or minimum scale; order by date or size. Returns\n disclosure metadata only, never breach contents. Use this for questions\n like 'what were the biggest breaches of 2013' or 'which airlines have ever\n been hit by ransomware'."
},
{
"name": "breach_timeline",
"description": "Build the incident-by-incident CHRONOLOGY of one organization across\n every source and all history, with judgment on top: first and latest\n incident, incidents per year, whether the organization is a repeat victim,\n worst threat level and total accounts ever exposed. Those summary fields\n cover EVERY incident on record. The timeline list carries a window of them,\n oldest first within the window, defaulting to the most recent limit\n incidents and paging backwards with offset, so an organization with a long\n history shows its current state first rather than only its ancient "
},
{
"name": "breach_stats",
"description": "Aggregate the full breach archive into analyst-grade statistics:\n incidents and accounts exposed per year, per source, per exposed data\n type, per threat level, or per ransomware actor — plus the five largest\n incidents ever recorded. Use it to answer 'how has breach volume trended\n since 2015', 'which ransomware groups have the most victims' or 'how often\n are passwords part of a breach'. Aggregate counts only; no leaked records."
},
{
"name": "assess_threat",
"description": "Classify a piece of security text you supply — an advisory, alert or\n forum post — into a threat level, matched categories, financial-target\n flags, a confidence score and a recommended action. Pure local analysis:\n it collects nothing, stores nothing and reaches no network; the text never\n leaves the server. Use it to triage findings surfaced by breach_news or\n from your own monitoring."
},
{
"name": "feed_sources",
"description": "List the public disclosure feeds this server aggregates, how many\n disclosures are cached per source, each source's newest item and an honest\n staleness flag, plus cache ages. Takes no arguments. Also states the scope\n plainly: public feeds only — no .onion access, no arbitrary fetching or\n crawling, no credential or PII output. Check this first if another tool's\n answer looks thin: a stale live feed is a finding, not background noise."
}
],
"profiled_at": "2026-09-27T17:01:45.363Z"
},
"unreachable": false
}