Webz.io logoDocs
Overview
Start Here
News, Blogs, Forums & Reviews APIs
News Search API
Firehose
Cyber API
Data Breaches API
Introduction
Quickstart
Search Scope
Filters
Record Data Fields
API Reference
News, Blogs, Forums & Reviews Archive
Web Content API (Deprecated)
Webz.io logo
Overview
Start Here
News, Blogs, Forums & Reviews APIs
News Search API
Firehose
Cyber API
Data Breaches API
Introduction
Quickstart
Search Scope
Filters
Record Data Fields
API Reference
News, Blogs, Forums & Reviews Archive
Web Content API (Deprecated)

On this page

No sections

Webz.io DocumentationContact our team© 2026

Search Scope

Every search is scoped to a domain or an email. At least one of the four parameters below must be present, or the request returns 400.

ParameterSearchesExample
emailOne compromised email address[email protected]
email_domainCompromised accounts by email domainemail_domain=example.com
login_domainCredentials used to log into a domainlogin_domain=example.com
domainEither the email domain or the login domaindomain=example.com

Domain matching

  • A root domain (example.com) in login_domain also matches its subdomains.
  • A subdomain (sub.example.com) stays exact to that subdomain.
  • email is matched exactly; its domain part is what gets authorized on your account.

Values are case-insensitive. You can combine email_domain with login_domain in one request, but you cannot send two values for the same parameter - search one domain at a time.

You can only search domains authorized for your token. A new domain is added automatically on first use; a brand-new domain may take about 20 seconds to index on that first request. See Errors, Rate Limits & Credits.

Last updated: July 28, 2026
PreviousQuickstartNextFilters