Digital footprint

Digital footprint check

Newsletters, shopping sites, streaming trials, a forum you joined in 2014, a dozen sign-in-with-Google logins you have long forgotten. Each one still holds some of your data. A footprint check is simply the exercise of finding them, seeing which are exposed, and deciding what to keep.

Last updated: 31 May 2026Independent guidance, Australia-first

The short answer

A digital footprint check answers three questions: what am I signed up to, what has been exposed in a data breach, and what should I do about it. The fastest route is to connect a supported inbox and let a tool rebuild the account list for you, which takes a few minutes. The manual route reaches the same place using private-window searches, inbox search terms, your saved logins and a breach-checking service, and usually takes between half an hour and an afternoon. Either way, the output is the same: a list, a sense of what is exposed, and a plan.

In The Event Of is an Australian digital footprint manager that helps you find the accounts linked to your email, see your breach exposure, and get a prioritised plan of what to do after a breach or a life change.

Australian & independentThird-party security assessmentSources cited

Key takeaways

  • A footprint check is a diagnostic: find the accounts first, then decide what to close, secure or remove.
  • Your inbox is the single richest record of what you have signed up to, because almost every account sent you a welcome or receipt email.
  • A breach check is one step inside a footprint check, not a substitute for it.
  • Most people find accounts they had genuinely forgotten, and dormant accounts are the ones most likely to still use an old password.
  • You cannot erase a footprint, but you can meaningfully shrink it and keep it that way with a check once or twice a year.

Definition

What a digital footprint check actually is

Your digital footprint is the trail of data you have left online: the accounts you created, the services holding your email address, the subscriptions billing your card, and the personal details sitting in company databases. A footprint check is the diagnostic pass over that trail. It answers three questions in order.

  1. What am I signed up to? The full list, including the accounts you have forgotten about.
  2. What has been exposed? Which of those accounts have appeared in known data breaches, and what was leaked.
  3. What should I do about it? Which accounts to close, which passwords to change, and which logins to lock down.

The point is not paranoia. It is a current picture of where your data lives, so you can shrink your exposure deliberately rather than reacting to whatever turns up in the news.

Check, checklist, removal: three jobs

This page is the diagnostic. If you want the thorough, room-by-room audit with every category written out, work through the digital footprint checklist instead. Once you know what is exposed and want it taken down, the next step is removing personal information in Australia.

Fast path

The quickest way to run the check

The slow part of any footprint check is discovery. Finding accounts by hand means digging through years of email one search at a time, and the accounts you most want to find are precisely the ones you have stopped thinking about. Tools that connect to your inbox automate that one step.

In The Event Of connects to a supported inbox, Gmail or Outlook, and reads account-related metadata, sender addresses, subject lines, labels and timestamps, rather than the body of your emails. From that it reconstructs the list of services tied to your address, connects with 100 + services, and maps them into a single view alongside baseline breach checks. Sensitive values such as your connected-inbox OAuth tokens are encrypted with AES-256-GCM at the application level, on top of encryption at rest.

Discovery, the footprint map, guided checklists, progress tracking and baseline breach checks with essential alerts are included on the free tier at A$0. Protection, at A$10 a month or A$99 a year with a 14-day free trial on the monthly plan, adds multiple email addresses, deeper breach detail, priority alerts, richer remediation guidance and continuous monitoring. If you would rather not connect anything at all, skip to the manual method below.

Run your footprint check, free

Connect a supported inbox and In The Event Of rebuilds the list of accounts tied to your email, checks them against known breaches, and gives you a guided list of what to close, secure or update. No credit card required.

Check my exposure free

Manual method

Run the check by hand, no tools required

You can do all of this yourself. It takes longer and it will not catch everything, but it costs nothing and it teaches you a great deal about where your data has spread. Work through the steps in order and keep a running list as you go.

  1. 1

    Search your own name in a private window

    Open a private or incognito window so your own history and logins do not skew the results, then search your name. Try variations: your name in quotation marks, your name plus your city, your name plus an employer or an old username. This is the layer strangers can see. Note anything surprising, such as old profiles, directory listings or forum posts.
  2. 2

    Search each email address in quotation marks

    In the same window, search each address you have used, wrapped in quotation marks, to force an exact match. This surfaces public mentions, pasted lists and profiles tied directly to the address. Repeat for older and secondary addresses, which are usually the ones with the longest tail of forgotten signups.
  3. 3

    Mine your inbox for signups and receipts

    Search your inbox for the phrases that signup emails almost always contain: “welcome to”, “verify your email”, “confirm your subscription”, “your order”, “receipt” and “free trial”. Most results are live accounts. Our guide on how to find accounts linked to your email goes deeper on the search operators, and accounts linked to your phone number covers the same job for your mobile.
  4. 4

    Read your saved logins

    Open your password manager, or your browser's saved password settings, and read the whole list. This is often the fastest single view of every site you have created a login for, and it doubles as a to-do list. While you are there, review the third-party apps connected to your Google or Microsoft account and revoke anything you no longer use.
  5. 5

    Check each address for breach exposure

    Enter each address into a reputable breach-checking service and note which incidents it appears in and what was exposed. See our guide to Have I Been Pwned for how to read the results, the alternatives worth running alongside it, and how to run a data breach check for why different services return different answers.

Act on it

What to do with what you find

A list is only useful if you work through it. Take it in priority order rather than alphabetically, because the risk is very unevenly distributed.

  • Close what you no longer use.Every dormant account is data you no longer watch and a login that can be breached without you noticing. Look for “delete account” or “close account” in each service's settings, or see how to delete old accounts.
  • Fix reused and weak passwords first. If one password protects several accounts, a single breach unlocks all of them. Prioritise any password that is reused or that sits on an account you found in a breach, and turn on multi-factor authentication wherever it is offered.
  • Lock down the accounts that unlock others. Your primary email, your banking and payment logins, and anything that can reset your other passwords are worth far more than the rest. Give them unique passwords, strong multi-factor authentication and current recovery details.
  • Deal with anything already exposed. If an address turned up in a breach, follow what to do if your email is in a data breach and, for the mailbox itself, how to secure your email after a data breach.

Do not stop at the breached accounts

The accounts named in a breach are the ones you already know about. The forgotten account with a ten-year-old password and no multi-factor authentication is the one worth finding, and it will never appear in a breach notification because nobody has told you it exists.

Cadence

How often to re-run the check

Treat this as maintenance rather than a one-off project. Once or twice a year is a reasonable baseline, and it is worth an extra pass whenever your circumstances change, because life events are when new accounts appear and old details go stale.

  • After a breach in the news at a service you actually use, rather than after every breach in the news.
  • When you change your phone number, your card, or your primary email address.
  • When you move house, in which case the address-change checklist covers who needs telling.
  • When you change jobs and lose access to a work email that was attached to personal accounts.

If you want to understand what these tools do and do not cover before you commit to one, compare a password manager, a breach monitor and a digital footprint manager, or read our roundup of digital footprint management tools in Australia.

Using In The Event Of

How In The Event Of helps

In The Event Of exists to collapse the discovery step. You connect a supported inbox, Gmail or Outlook, and it scans for account-related metadata, sender addresses, subject lines, labels and timestamps, rather than the body of your emails. You can also add services manually. It turns what it finds into a footprint map, runs baseline breach checks, and gives you guided checklists and progress tracking so the list becomes a set of decisions rather than a spreadsheet.

The free tier costs A$0 and covers discovery, the footprint map, guided checklists for life and admin changes, progress tracking, and baseline breach checks with essential alerts. Protection, at A$10 a month or A$99 a year with a 14-day free trial on the monthly plan, adds multiple email addresses, deeper breach detail, priority alerts, richer remediation guidance and continuous monitoring. Every change to an account is still yours to make, we surface it and walk you through it.

FAQ

Frequently asked questions

What is a digital footprint check?
A digital footprint check is the process of finding the accounts, services and subscriptions tied to your identity online, seeing which ones have appeared in known data breaches, and deciding what to close, update or secure. You can do it manually by searching your name, your email addresses and your inbox, or with a tool that maps the accounts linked to an email address for you.
How long does a digital footprint check take?
A tool-led check that scans a connected inbox takes a few minutes to return a first list, though a large or long-standing mailbox will take longer. The manual method is slower: most people need somewhere between half an hour and an afternoon to work through their searches, inbox and saved logins properly.
Is a digital footprint check safe?
The manual method is safe because you are only searching public information and your own inbox. With a tool, safety depends on how it handles your data. In The Event Of reads account-related metadata such as sender addresses, subject lines, labels and timestamps rather than the body of your emails, and sensitive values such as your connected-inbox OAuth tokens are encrypted with AES-256-GCM at the application level, on top of encryption at rest.
Do I need to connect my inbox to run a check?
No. Connecting a supported inbox, Gmail or Outlook, simply automates the slowest part, which is rebuilding the list of accounts you have signed up to. Every step in the manual method below reaches the same result without connecting anything, it just takes longer and is more likely to miss older accounts.
How often should I check my digital footprint?
Once or twice a year is a sensible baseline for most people, plus any time something changes: a breach in the news involving a service you use, a new phone or card, a house move, or a change of job. Regular light checks are far easier than one occasional deep clean.
Can I delete my digital footprint entirely?
Not completely. Archived pages, public registers and data already passed on to third parties are very hard or impossible to remove in full. What you can realistically do is shrink it: close unused accounts, delete old profiles, request removal where a service or broker allows it, and stop creating new exposure.
What is the difference between a footprint check and a breach check?
A breach check tells you whether a specific email address has appeared in a known data breach. A footprint check is broader: it maps the accounts tied to you, breached or not, so you can see and manage your whole online presence. A breach check is one step inside a footprint check.

Disclaimer: This guide is general information, not personal security or legal advice. Third-party tools and their settings change, so check the provider's own help pages before relying on a specific step. This guide is general information only and is not legal, financial, or security advice. It is based on publicly available sources at the time of writing and may not reflect the most recent developments. In The Event Of Pty Ltd (ABN 38 687 352 647) is an independent Australian company and is not affiliated with the third-party services named in this guide.