# Breached Accounts Domain Stats

GET /cti/email-breaches/accounts/stats/domain: Breached account counts per domain.

Source: https://docs.deepinfo.com/reference/cti/breached-accounts-domain-stats/

Last updated: 2026-09-27

---
`GET https://api.deepinfo.com/v1/cti/email-breaches/accounts/stats/domain`

Breached account counts per domain.

## Authentication

Send your API key in the `apikey` request header.

## Response Fields

An array of objects:

| Field | Type |
|---|---|
| `domain` | string |
| `affected_account_count` | integer |
| `breach_count` | integer |

## Response Schema

_Inferred from examples._ Built from the saved 2xx example response: the fields it contains, with the types seen there. It is not a contract. The response body is an array; `[]` marks its elements.

| Field | Type |
|---|---|
| `[].domain` | string |
| `[].affected_account_count` | number |
| `[].breach_count` | number |

## Examples

### 200 · OK

```bash
curl 'https://api.deepinfo.com/v1/cti/email-breaches/accounts/stats/domain' \
  -H 'apikey: YOUR_API_KEY' \
  -H 'Accept: application/json'
```

`Content-Type: application/json` · `deepinfo-request-id: 00000000-0000-4000-8000-0000356d0001`

```json
[
  {
    "domain": "acme.example",
    "affected_account_count": 0,
    "breach_count": 8
  },
  {
    "domain": "fernhill.example",
    "affected_account_count": 1,
    "breach_count": 9
  }
]
```
