SquareBreach API

Developer docs

All data access goes through SquareBreach. Authenticate with your session (browser) or an API key once you have an Operator/Desk credit pack. Searches spend prepaid credits server-side — no subscriptions. Guests get 2 free searches.

Auth

  • Browser: email/password, Google, or Discord
  • API: Authorization: Bearer bs_… (coming with Operator/Desk keys)

Example — search

POST /api/v1/search
Content-Type: application/json

{
  "q": "test@example.com",
  "mode": "smart",
  "sources": ["breach", "stealer", "holehe"]
}

// 200
{
  "ok": true,
  "data": { "...": "..." },
  "credits_remaining": 49
}

// 401 / 402
{
  "ok": false,
  "code": "LOGIN_REQUIRED" | "PAYWALL" | "RATE_LIMITED",
  "error": "..."
}

Example — stolen logs

POST /api/v1/victims
Content-Type: application/json

{ "action": "search", "q": "test@example.com" }          // 1 credit
{ "action": "summary", "log_id": "..." }                 // 2 credits, Pro+
{ "action": "manifest", "log_id": "..." }                // 2 credits, Pro+
{ "action": "file_content", "log_id": "...", "file_id": "..." }  // 5, Operator+
{ "action": "archive", "log_id": "..." }                 // 5 credits, Operator+
  • POST /api/v1/searchFull check or filtered sources (1 credit)
  • GET /api/v1/meProfile & credit balance
  • GET /api/v1/me/historyYour recent searches
  • POST /api/v1/victimsStolen logs — search (1), summary (2), file/archive (5). Pro+ / Operator+
  • POST /api/v1/enrichLookups — Discord, Steam, Xbox, Roblox, IP, accounts, more
  • POST /api/v1/investigateDeep check (Starter+)
  • POST /api/v1/monitorsLeak alerts — create / list / pause (Operator+)
  • POST /api/v1/jobsBulk search, export, file-search jobs (Operator+)

Credit packs live on Pricing. Try searches in the dashboard.