Secure Drop
Anonymous · Encrypted · No login required
Your message is sealed and anonymous. We cannot identify you. No account or login is needed.
Your message
Max 3 files, 10 MB each
Secure Channel
Anonymous · Bidirectional · Encrypted
Start an anonymous conversation. You'll receive a thread code to check for replies later.
Your message
Max 3 files, 10 MB each
Thread Code
Enter your thread code above to check for replies.
Security Intelligence

CHECKIntelligence.

Built-in OSINT bot that scans data breach databases for exposed emails, phones, usernames, domains, and IPs. Reports delivered as self-destructing encrypted Dead Drops.

CHECKIntelligence. — Ask a Question. Get a Secure Report.
Intelligence Bot

Ask a Question. Get a Secure Report.

Built-in OSINT bot that scans data breach databases for exposed emails, phones, usernames, domains, and IPs. Reports delivered as self-destructing encrypted Dead Drops.

Core Capabilities

Breach Intelligence. Encrypted. Ephemeral.

CHECK combines real-time OSINT with City of Hats encryption. Every report is delivered as a self-destructing Dead Drop — no screenshots, no persistent data.

01

Multi-Database OSINT

CHECK queries across multiple breach databases, dark web sources, and intelligence feeds — surfacing records from Cit0day, Collections, Naz.API, ALIEN TXTBASE, and more.

02

Risk Score & Severity

Every scan returns a risk score from 0–100 with a severity level (SAFE, LOW, MEDIUM, HIGH, CRITICAL). Credential leaks trigger immediate CRITICAL alerts.

03

End-to-End Encrypted Reports

Reports are delivered as encrypted Dead Drops using AES-256-GCM. The server cannot read the report content. Only you can decrypt it.

04

Self-Destructing Delivery

After you view the report, it is permanently deleted from the server. No history, no logs, no cached copies. Sensitive breach data never persists.

How It Works

From Command to Report in Seconds

Type a natural language command, get a comprehensive intelligence report delivered as an encrypted self-destructing Dead Drop.

01

Open the Bot

Start a channel with the CHECK Intelligence Bot. It lives right inside your regular channel list.

02

Type a Command

Enter a query like "check email john@example.com" or "check domain company.com". Use the quick-action chips for common scan types.

03

Scan Runs

CHECK queries breach databases in real time. Within seconds you see a summary with risk level and exposure count.

04

Open Secure Report

Tap "Open Secure Report" to view the full Dead Drop. It shows every exposed record, source, and severity — then self-destructs.

Use Cases

Who Uses CHECK Intelligence?

From personal security hygiene to enterprise breach response — CHECK Intelligence is built for anyone who needs to know if their data is exposed.

Personal Security Audit

Check your own email, phone, and usernames to discover exposures before attackers exploit them. Change compromised passwords immediately.

Enterprise Security Teams

Scan company domains and employee emails to detect corporate credential leaks. Identify exposed accounts before they become attack vectors.

Penetration Testers

Gather OSINT on target domains and emails during reconnaissance. Source-level data helps prioritize attack surfaces.

Investigative Journalists

Verify digital footprints and trace exposed identities without leaving a browser trail. Reports self-destruct, protecting source material.

Legal & Compliance

Document breach exposure for regulatory filings, litigation, or compliance audits. Reports provide source-level evidence with timestamps.

Protecting Family

Check if family members' emails or phone numbers appear in known breaches. Proactively secure accounts before identity theft occurs.

🛡 Threat Model

Built on Zero-Trust Principles

CHECK Intelligence inherits City of Hats' zero-knowledge architecture. Reports are encrypted and ephemeral by design.

Enforced by Design

  • Reports encrypted with AES-256-GCM before delivery
  • Self-destructing Dead Drop delivery for all reports
  • Passwords partially masked in all report outputs
  • No report history stored on server after viewing
  • Bot channel uses same E2E encryption as all channels
  • Source-level severity ratings for each exposed record

Never

  • Reports are never cached or stored after delivery
  • Full passwords are never shown — always partially masked
  • No third-party analytics on report content
  • Scan queries are not logged or associated with your identity
  • No server-side copies of decrypted report data
  • No data shared with external services or advertisers
No system is invulnerable. Stating what we defend against — and where our boundaries are — is more credible than claiming absolute security. Learn More →

CHECKIntelligence.

Built-in OSINT bot that scans data breach databases for exposed emails, phones, usernames, domains, and IPs. Reports delivered as self-destructing encrypted Dead Drops.