Screen new HubSpot contacts for data breach exposure

By General Input

The moment a new contact lands in HubSpot, we check their email against known data breaches and flag the high-risk ones so your team can act fast.

Integrations

  • Have I Been Pwned
  • HubSpot
  • Slack Bot

Type

Agentic Task

Categories

  • Operations
  • Customer Support

Run this automatically whenever a new contact is created in HubSpot. HubSpot sends an outgoing webhook for new contacts, so use that as the trigger. From the webhook payload, read the new contact's email address and their HubSpot contact record ID.

Check the contact's email against Have I Been Pwned. Call Get Breaches for Account and Get Pastes for Account with that email. Have I Been Pwned returns an empty 'not found' result when an address is clean, so if both calls come back with no breaches and no pastes, treat the contact as clean and stop right there: do not write a note, do not change any field, and do not send any alert.

If there are breaches or pastes, write a short plain-language risk summary an account owner can read at a glance. Name each breach, say when it happened, and list which classes of data were exposed (for example email addresses, passwords, phone numbers, physical addresses, or credit card and bank details). Lead with the most sensitive exposures so the risk is obvious in the first line.

Attach that summary to the contact with HubSpot's Create Note, associated with the contact record so it shows up on their timeline. Then record the risk on the contact with Update Contact: set a breach-risk property to high when passwords or financial data were exposed, and to medium or low for other breaches based on how sensitive the exposed data is.

Only alert a human when the exposed data includes passwords or financial data such as credit card numbers or bank account details. In that case, identify the contact's owner in HubSpot, look up their Slack account by their email address, and send them a direct message with Slack Bot's Send a Message. Summarize the breach risk and recommend the customer reset their passwords and turn on multi-factor authentication. If the owner cannot be matched to a Slack user, post the same alert to a designated security or customer-success channel instead. For breaches that do not involve passwords or financial data, skip the Slack alert to keep the noise down: the note and the risk field are enough.

Related prompts

Explore more prompts
A brand asset library your marketing team actually searchesTurn Mailjet email clicks into ranked HubSpot follow-upsClean out the Looker dashboards and Looks nobody opensLiveKit live operations console for room moderationWake up dormant Keap leads with a researched reasoniMessage campaign console with pre-flight checks and delivery boardLiveChat coverage board for planning next week's shiftsPhone routing control panel for LiveKit voice agentsA searchable RFP answer library your bid team drafts fromLinkedIn Ads budget pacing dashboard for every client account