SquareBreach API
Developer docs
All data access goes through SquareBreach. Authenticate with your session (browser) or an API key once you have an Operator/Desk credit pack. Searches spend prepaid credits server-side — no subscriptions. Guests get 2 free searches.
Auth
- Browser: email/password, Google, or Discord
- API:
Authorization: Bearer bs_…(coming with Operator/Desk keys)
Example — search
POST /api/v1/search
Content-Type: application/json
{
"q": "test@example.com",
"mode": "smart",
"sources": ["breach", "stealer", "holehe"]
}
// 200
{
"ok": true,
"data": { "...": "..." },
"credits_remaining": 49
}
// 401 / 402
{
"ok": false,
"code": "LOGIN_REQUIRED" | "PAYWALL" | "RATE_LIMITED",
"error": "..."
}Example — stolen logs
POST /api/v1/victims
Content-Type: application/json
{ "action": "search", "q": "test@example.com" } // 1 credit
{ "action": "summary", "log_id": "..." } // 2 credits, Pro+
{ "action": "manifest", "log_id": "..." } // 2 credits, Pro+
{ "action": "file_content", "log_id": "...", "file_id": "..." } // 5, Operator+
{ "action": "archive", "log_id": "..." } // 5 credits, Operator+POST /api/v1/searchFull check or filtered sources (1 credit)GET /api/v1/meProfile & credit balanceGET /api/v1/me/historyYour recent searchesPOST /api/v1/victimsStolen logs — search (1), summary (2), file/archive (5). Pro+ / Operator+POST /api/v1/enrichLookups — Discord, Steam, Xbox, Roblox, IP, accounts, morePOST /api/v1/investigateDeep check (Starter+)POST /api/v1/monitorsLeak alerts — create / list / pause (Operator+)POST /api/v1/jobsBulk search, export, file-search jobs (Operator+)
Credit packs live on Pricing. Try searches in the dashboard.