Note: We just released a "V2" of the site that allows you to add multiple email addresses to monitor, and (then) to have all your breach alerts sent to your single primary email address.
Note: We just released a "V2" of the site that allows you to add multiple email addresses to monitor, and (then) to have all your breach alerts sent to your single primary email address.
In all seriousness I have faith in you guys for the most part (storing my bookmarks and sharing the browsing sessions across browsers).
E.g. you can supply your email address as foo+bar@<domain> and mail sent to that address will be routed to foo@<domain> by some providers like gmail and protonmail.
But then that means enumerating every + address you use (I almost exclusively do this).
Thoughts? I know this came up in a HIBP forum and I think Troy Hunt took the position of too much work for 0.1% of users, many of whom are likely technical enough to use a password manager and do this enumeration if they wanted.
Also, what's with the cards here? I can't select any of the text on them.
I was able to add my first.m.last@gmail.com and firstmlast@gmail.com as separate emails.
I know that might complicate your detection system, it just might miss some breaches for people who use both.
If not: I added an email address to monitor, and the verification email said:
> We sent this message to $userEmail because the email address opted into alerts from Firefox Monitor.
Note the `$userEmail`.
Still, great job!
But future breach alerts will be sent to the Primary address. (If you select that in your preferences.)