Price captures verified 2026-08-09; overall scores unpublished
Password Breach Response Checklist
Contain then rotate: if a service reports a password breach, change that password to a unique value from a device you trust, enable MFA, and hunt every other account that still used the old secret. Email is the recovery hub, so prioritize it. A password manager helps prevent the next reuse mistake; it is not a magic cleanup button and it does not erase data already copied by attackers. Free remedies come first. Optional paid cards use claim-ledger prices from 2026-08-09 (NordPass Premium from $1.39/mo on a 2-year USD plan; 1Password Individual $2.99/mo billed annually). Overall scores stay unpublished. Who should not buy: anyone who has not reset the breached password and email MFA yet, or who needs a published lab score before deciding.
- Guide · Free-first · ~12 min read
Fastest free path
- 1Open the real vendor site via bookmark (not a surprise email link alone)
- 2Change the breached account password to a unique value
- 3Enable MFA on that account and sign out other sessions if available
- 4Hunt reuse: change every other account that shared the old password, email first
- 5Review email filters, forwarding rules, and recovery phone numbers
- 6Adopt a manager only after containment so reuse does not return
Step-by-step guide
- 1Free
Contain the breached account
Reset the password from a device you trust. Prefer official apps and bookmarked sites, not unexpected email links. If the notice asks for gift cards, wires, or remote-access software, treat it as phishing.
- Reset password on the official site
- Enable MFA on that account
- Sign out other sessions if the service offers it
- 2Free
Hunt reuse, email first
The real damage is often identical passwords on email or banking. Change every reused copy. Unique passwords stop credential stuffing even when an old dump is public. Never paste your password into a “breach check” form.
- Change reused passwords everywhere they appear
- Prioritize email, then banks and Apple/Google/Microsoft
- Check recovery email and phone on high-value accounts
- 3Free
Inspect recovery paths and mailbox rules
Attackers who already used a reused password may add forwarding rules or change recovery phones. Review filters, app passwords, and trusted devices on email before you shop for subscriptions.
- Review forwarding and filter rules
- Remove unknown app passwords / sessions
- Confirm recovery phone still belongs to you
- 4Free
Escalate only when identifiers go beyond passwords
If the notice claims SSN-class financial identifiers or you see confirmed fraud, follow identity and freeze guidance on the data-privacy hub. A password-only hit you already fixed does not require panic purchases.
- Match response to data types in the real notice
- Use free credit freezes when financial identifiers may be involved
- Skip monitoring upsells until containment is done
- 5Optional paid
Prevent the next incident with a vault
After containment, use a generator and vault so reuse does not return. NordPass fits a simpler personal upgrade (Premium from $1.39/mo on a 2-year USD plan, 2026-08-09). 1Password fits when structured sharing or recovery is the leftover job (Individual $2.99/mo billed annually). Store recovery codes offline.
- Install from official channels only
- Generate unique passwords going forward
- Enable MFA on the vault and store recovery offline
What cannot always be removed
- Data already copied by attackers before you reset
- SIM-swap or recovery-phone weakness
- Phishing that continues after the original breach
- Guaranteed deletion of your credentials from every historical dump
- Invented breach victim counts or unpublished product scores
Sources
- Security Checklist methodology, Incident guides stay free-first; no invented breach statistics
- NordPass claim ledger, data/claim-ledgers/nordpass.json#nordpass-starting-price; Premium from $1.39/mo (2-year USD via NordSec GraphQL) captured 2026-08-09
- 1Password claim ledger, data/claim-ledgers/1password.json#1password-starting-price; Individual $2.99/mo billed annually captured 2026-08-09
- Related educational guide, data-privacy/check-email-data-breach for password-free lookup habits; escalate identity steps only when warranted
- Claim ledgers (T014), nordpass.json, 1password.json, bitwarden.json, dashlane.json: starting prices verified 2026-08-09; scores unpublished
- Vendor marketing pages, Feature and architecture claims from official sites, not independent lab evidence; re-verify same-day before purchase advice
- Security Checklist methodology, How password-manager reviews are structured before scores publish, /methodology/
Frequently asked questions
Internal links
Continue in this cluster
Hub, tools, and related pages from the inventory. No invented URLs.
Expert guides & insights
Related guides
Stay in the same problem space without jumping brands.
Want launch updates?
The email newsletter is not running yet. Use Contact if you want a human reply when it opens. No fake signup form.
