> ## Documentation Index
> Fetch the complete documentation index at: https://kb.hosting.com/llms.txt
> Use this file to discover all available pages before exploring further.

# How to Read Your Security & Dark Web Monitoring Report

> Your Security & Dark Web Monitoring report shows whether information associated with your monitored email addresses has appeared in known data breaches.

The report helps you understand what information was exposed and which service or breach it was associated with.

## What does a finding mean?

A finding means information connected to one of your monitored email addresses was found in known breach data.

Depending on the breach, the report may show:

* **Email address** — the monitored address found in the breach.
* **Breach or service** — the website or service associated with the exposed data.
* **Information exposed** — the types of information found, such as an email address, username, or password.
* **Password status** — whether the breach data indicates that a password was exposed.

A finding does not necessarily mean your [Hosting.com](http://Hosting.com) account or website was compromised.

## Why does the report show an old breach?

Your first scan checks against **historical breach data** as well as newly discovered information.

This means you may see a breach that happened months or even years ago.

An old finding does not necessarily mean your information was recently exposed. It means the information was found in the breach data being checked.

If the affected password is still in use, change it immediately and change it anywhere else you reused it.

## Why can't I see the exposed password?

Security & Dark Web Monitoring does not display exposed passwords in the report.

If the report indicates that a password was exposed, treat that password as compromised and change it on the affected account and anywhere else you reused it.

## What if the password status says it wasn't exposed?

If the report indicates that a password was **not** exposed, the breach may still contain other information such as your email address, username, or name.

You should still be cautious of unexpected emails, messages, or password reset requests related to the affected service.

## What should I do after finding a breach?

If you find a breach associated with your email address:

1. Change the affected password if it was exposed.
2. Change the same password on any other accounts where it was reused.
3. Enable two-factor authentication (2FA) where available.
4. Be cautious of suspicious emails, links, and messages.

For more detailed steps, see **\[[I Received a Security Alert — What Should I Do?](/i-received-a-security-alert-what-should-i-do)]**.

## No findings?

If your report doesn't show any findings, that's a good thing.

It means we haven't found your monitored information in the breach data checked.

Monitoring continues, so you'll be alerted if a new match is found.

## Need help?

To learn more about the service, see **\[[Security & Dark Web Monitoring](/security-and-dark-web-monitoring)]**.

To set up monitoring, see **\[[Set Up Security & Dark Web Monitoring\]](/set-up-security-and-dark-web-monitoring)**.

If you've received an alert, see **\[[I Received a Security Alert — What Should I Do?](/i-received-a-security-alert-what-should-i-do)]**.
