---
title: "Get the dedicated combolist exposure report for a domain"
method: GET
path: "/search/combolist/domain/{domain}/report"
tags: ["Search Combolists"]
---

# Get the dedicated combolist exposure report for a domain

`GET /search/combolist/domain/{domain}/report`

Aggregate Combolist exposure for a root email domain: total pairs, distinct email addresses, password strength breakdown, and the first and last dates a pair for that domain entered the index.

**Access**
- Authentication is optional. An anonymous caller gets the same aggregate figures; the report exposes counts only, never a credential.
- A domain matching one of your blacklist rules returns a zeroed report rather than an error.

**Caching**
Cached for one hour per domain and shared across callers. Send `x-no-cache: 1` to force a recompute.

**Response**
`CombolistDomainReportResponse`. `dataset` is always `combolist`, which is what distinguishes it from the stealer-log report at `GET /search/domain/{domain}`.

## Path parameters

- `domain` string, required — Root email domain to report on, for example `example.com`.

## Response `200`

Report returned successfully.

- CombolistDomainReportResponse
  - `domain` string, required
  - `total_credentials` integer, required
  - `unique_emails` integer, required — Distinct email identifiers, approximate on large domains.
  - `password_strength` CombolistPasswordStrengthReport, required
    - `too_weak` integer, required
    - `weak` integer, required
    - `medium` integer, required
    - `strong` integer, required
  - `first_seen` string, date-time, nullable — Earliest date a pair for this domain entered the index.
  - `last_seen` string, date-time, nullable — Most recent date a pair for this domain entered the index.
  - `dataset` 'combolist'

## Other responses

- `404` — Combolist search is not enabled on this deployment.
- `422` — Invalid domain.
- `429` — Rate limit exceeded. See Retry-After / X-RateLimit-* headers.
- `503` — Combolist search under maintenance, or public API temporarily disabled.

## Changes

- **2026-09-04** `eb219e94d077` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/leakradar/apis/leakradar-io-api/changes/search/combolist/domain/:domain/report/get.md)

---

[API](https://skmtc.dev/leakradar/apis/leakradar-io-api.md) · [All operations](https://skmtc.dev/leakradar/apis/leakradar-io-api/llms.txt) · [OpenAPI document](https://skmtc.dev/leakradar/apis/leakradar-io-api/revisions/99aaaa4fbeb1?raw)
