# Breached Account Stats

GET /cti/email-breaches/accounts/{account_id}/stats: Breach statistics for one account.

Source: https://docs.deepinfo.com/reference/cti/breached-account-stats/

Last updated: 2026-09-27

---
`GET https://api.deepinfo.com/v1/cti/email-breaches/accounts/{account_id}/stats`

Breach statistics for one account.

## Authentication

Send your API key in the `apikey` request header.

## Path Parameters

| Parameter | Required | Description | Example |
|---|---|---|---|
| `account_id` | Required |  | `00000000000000000000000ec9430001` |

## Response Fields

| Field | Type | Description |
|---|---|---|
| `breach_count` | integer |  |
| `first_breach_date` | string | date-time |
| `last_breach_date` | string | date-time |
| `data_types` | array of string |  |
| `timeline` | array of object |  |

## Response Schema

_Inferred from examples._ Built from the saved 2xx example response: the fields it contains, with the types seen there. It is not a contract.

| Field | Type |
|---|---|
| `breach_count` | number |
| `first_breach_date` | string |
| `last_breach_date` | string |
| `data_types` | array<string> |
| `timeline` | array<object> |
| `timeline[].year` | number |
| `timeline[].breaches` | array<object> |
| `timeline[].breaches[].id` | string |
| `timeline[].breaches[].name` | string |
| `timeline[].breaches[].title` | string |
| `timeline[].breaches[].domain` | string |

## Examples

### 200 · OK

```bash
curl 'https://api.deepinfo.com/v1/cti/email-breaches/accounts/00000000000000000000000ec9430001/stats' \
  -H 'apikey: YOUR_API_KEY' \
  -H 'Accept: application/json'
```

`Content-Type: application/json` · `deepinfo-request-id: 00000000-0000-4000-8000-0000356d0001`

```json
{
  "breach_count": 8,
  "first_breach_date": "2025-06-01T08:00:00Z",
  "last_breach_date": "2025-06-01T08:00:00Z",
  "data_types": [
    "Email addresses",
    "Passwords"
  ],
  "timeline": [
    {
      "year": 2025,
      "breaches": [
        {
          "id": "acme-breach",
          "name": "Fernhill Forum",
          "title": "Fernhill Forum",
          "domain": "acme.example"
        }
      ]
    }
  ]
}
```

### 404 · Not Found (nonexistent account_id)

```bash
curl 'https://api.deepinfo.com/v1/cti/email-breaches/accounts/ffffffffffffffffffffffff/stats' \
  -H 'apikey: YOUR_API_KEY' \
  -H 'Accept: application/json'
```

`Content-Type: application/json` · `deepinfo-request-id: 00000000-0000-4000-8000-0000356d0001`

```json
{
  "code": 30003,
  "details": [
    "Breached account does not exist."
  ],
  "solution": "https://docs.deepinfo.com/reference/"
}
```
