
Free · No signup · Real breach data
We check your email against the same breach and dark-web data security teams use. It takes about ten seconds, and it is free.
Your address goes to Have I Been Pwned over HTTPS — that check cannot be made anonymous. A free scan leaves no record of it with us.
Your privacy command center
Exposure Alerts
Know when your data leaks
Broker Removal
We submit recurring opt-outs for you
Family Coverage
Protect the people in your household
Crisis Assist
Get a guided response when risk spikes
Simple Pricing
Less than $0.15/day for full coverage.
Or $79/year — save 27%
Cancel anytime. No contracts.
How It Works
Scan first, monitor what matters, get help taking the next step.
Check if your email shows up in any known breach — no account needed, no credit card.
Klaw submits broker opt-outs on a recurring cadence so removed data is less likely to reappear unnoticed.
Get alerts, recovery guidance, and escalation paths when new exposure or fraud risk appears.
Platform
Monitoring
Guidance
Response
Emergency Lock
Emergency Lock is built for speed — act first, then work through a structured recovery path instead of losing time figuring out what to do. It locks the Klaw dashboard, not your sign-in, so change your password and turn on two-factor authentication too.
One-tap dashboard lock
Guided recovery workflow
Human review on paid tiers
Lockdown phone on eligible plans
VPN Access
Longer-term paid plans include VPN access — a more complete privacy layer while KLAW handles breach monitoring and recovery guidance.
Plans
Begin with free breach scanning, then upgrade for automated monitoring, dark web coverage, and stronger support.
Free
$0
Free exposure report
Basic
$9/mo
Core monitoring
Plus
$19/mo
Most popular choice
Ultra
$39/mo
Priority coverage
For developers
Send us an applicant, get back a 0–100 score, a Pass / Review / Fail decision and a signed token. We destroy the data before the response is written, so the liability never lands on your side.
POST /v1/verifications { "applicant": { "email": "…", "full_name": "…" } } → 201 { "decision": "pass", "trust_score": 87, "exposure": { "surface": 3, "dark_web": 1 }, "token": "eyJhbGciOiJFZERTQSIs…", "retained": null }
A portion of every paid subscription goes to the Identity Theft Resource Center — funding free support for people dealing with fraud and identity theft.
Learn More About ITRCPrivacy & Transparency
What We Store
What We Don't Store
Threat Intelligence
Track the broader threat landscape, then connect it back to your own exposure.
Real-time threat data pulled from CISA's Known Exploited Vulnerabilities feed and live security intelligence. Updated regularly.
Attackers are increasingly using 'ClickFix' tactics, where users are prompted to copy and paste malicious commands into their own terminals under the guise of security verification or software installation. These attacks exploit user trust and bypass traditional file-based malware defenses.
Action: Restrict the ability for non-administrative users to execute terminal commands and implement strict endpoint monitoring for suspicious script execution.
The WaterPlum group is actively targeting individuals with fake job recruitment lures to deliver malware. This malware steals cryptocurrency wallet credentials and provides remote access, which is then used to pivot into the victim's corporate network.
Action: Warn employees about unexpected recruitment-themed emails and block unauthorized software installations on corporate endpoints.
Voice phishing has overtaken email as a primary social engineering vector in 2026. Attackers are using generative AI to clone voices of colleagues or executives to manipulate help desk staff into resetting MFA devices or authorizing fraudulent wire transfers.
Action: Implement verification protocols that do not rely on voice recognition, such as multi-person authentication for sensitive requests.
This active campaign impersonates common business tools like Microsoft 365, Adobe, and Zoom to deceive users. It utilizes counterfeit document pages to steal active session tokens, allowing attackers to bypass traditional password-based authentication and MFA.
Action: Implement phishing-resistant MFA (such as FIDO2 security keys) and monitor for suspicious unauthorized session token usage.
N0va is an active phishing campaign targeting users across North America and Europe by leveraging the legitimate Microsoft device code authentication flow. By tricking users into entering a device code on a malicious site, attackers obtain persistent access tokens.
Action: Educate users on the risks of entering device codes from unsolicited prompts and restrict OAuth device code flow access where possible.
Fraudsters are actively distributing phishing emails impersonating Amazon to deceive consumers into revealing sensitive financial information. These scams leverage the trusted brand name to trick users into clicking malicious links or providing account credentials.
Action: Verify all order-related emails directly through the official Amazon website or app rather than clicking links in emails.
Showing 6 of 50 threats · Sources: CISA KEV + live security intelligence
Track Your Progress
Check where your enterprise application is in the review process.
Track your application in real-time
KLAW Removal Engine
Data brokers are selling your name, address, relatives, and phone number right now. KLAW sends legally-recognized removal requests every 60 days so they can't just re-list you.
FAQ
Yes. You can cancel from your account settings without contracts, cancellation fees, or extra steps. Access continues through the end of your billing period.
Your data may already be exposed
Start with a free scan, then decide if you want deeper monitoring, privacy tools, and real support.