{"product_id":"n8n-workflow-have-i-been-pwned-breach-monitor-to-google-sheets-alerts","title":"n8n Workflow: Have I Been Pwned Breach Monitor to Google Sheets \u0026 Alerts","description":"\u003ch3\u003eGet alerted only when a new breach matters—automatically\u003c\/h3\u003e\n\u003cp\u003eThis n8n workflow monitors \u003cstrong\u003eHave I Been Pwned\u003c\/strong\u003e for the latest breaches, scores each one against your risk rules and watchlist, logs every result to \u003cstrong\u003eGoogle Sheets\u003c\/strong\u003e, and sends \u003cstrong\u003eGmail\u003c\/strong\u003e and \u003cstrong\u003eSlack\u003c\/strong\u003e alerts only when the breach clears your configured threshold.\u003c\/p\u003e\n\n\u003ch3\u003eWhat this workflow does\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eRuns daily\u003c\/strong\u003e at \u003cstrong\u003e08:00\u003c\/strong\u003e (or you can trigger it manually via the n8n manual trigger).\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAuto-prepares your Google Sheet:\u003c\/strong\u003e checks the sheet’s first row and writes the header row automatically if it’s missing.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eFetches the latest breach\u003c\/strong\u003e using the \u003cstrong\u003eHave I Been Pwned latestbreach endpoint\u003c\/strong\u003e—no HIBP API key required.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAvoids duplicate logging:\u003c\/strong\u003e loads prior breach history from Google Sheets and skips processing if the same breach record was already logged (unless HIBP has revised it, or reprocessing is enabled).\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eScores breach severity\u003c\/strong\u003e from \u003cstrong\u003e0–10+\u003c\/strong\u003e based on:\n    \u003cul\u003e\n      \u003cli\u003erecords exposed\u003c\/li\u003e\n      \u003cli\u003esensitive data types (including \u003cstrong\u003epasswords\u003c\/strong\u003e, \u003cstrong\u003efinancial data\u003c\/strong\u003e, \u003cstrong\u003egovernment IDs\u003c\/strong\u003e, and \u003cstrong\u003ehealth data\u003c\/strong\u003e)\u003c\/li\u003e\n      \u003cli\u003eHIBP’s own verified\/sensitive flags\u003c\/li\u003e\n      \u003cli\u003eyour \u003cstrong\u003edomain or keyword watchlist\u003c\/strong\u003e\n\u003c\/li\u003e\n    \u003c\/ul\u003e\n  \u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eLogs every run outcome\u003c\/strong\u003e to Google Sheets (append new rows or update existing ones) to maintain a complete audit trail.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAlerts only above your threshold:\u003c\/strong\u003e if the score meets your configured level, it sends a formatted \u003cstrong\u003eHTML email\u003c\/strong\u003e via Gmail and a \u003cstrong\u003eSlack Block Kit\u003c\/strong\u003e card via the Slack API; otherwise it runs quietly.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003eSaaS security monitoring: detect impactful breaches that may affect your customers.\u003c\/li\u003e\n  \u003cli\u003eOps teams: maintain a searchable breach history in Google Sheets with consistent scoring.\u003c\/li\u003e\n  \u003cli\u003eAutomation engineers: deploy an n8n workflow that escalates only high-risk events through Gmail and Slack.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eScheduling:\u003c\/strong\u003e daily at 08:00 + manual trigger\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eIntegrations:\u003c\/strong\u003e \u003cstrong\u003eGoogle Sheets OAuth2\u003c\/strong\u003e, \u003cstrong\u003eGmail\u003c\/strong\u003e, \u003cstrong\u003eSlack API\u003c\/strong\u003e\n\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003en8n nodes\/logic:\u003c\/strong\u003e if, set, code, no op, gmail, email send\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003eSet it up by creating a Google Sheet, noting the \u003cstrong\u003eSheet ID\u003c\/strong\u003e and \u003cstrong\u003etab name\u003c\/strong\u003e, then connecting your Google Sheets OAuth2 credential in n8n.\u003c\/p\u003e","brand":"N8N Commerce","offers":[{"title":"Default Title","offer_id":45876855570611,"sku":"N8N-18518","price":77.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0749\/6279\/6723\/files\/jYfy3hmPdvNB7Kip-rDbk_np6IjkqL.png?v=1787303322","url":"https:\/\/buyflowscripts.com\/products\/n8n-workflow-have-i-been-pwned-breach-monitor-to-google-sheets-alerts","provider":"N8N Commerce","version":"1.0","type":"link"}