A structured self-diagnostic covering the ten public and semi-public surfaces an adversary uses to assemble an executive target profile. Work through it on screen, print it for a board binder, or use it to scope where a deeper audit is needed. Risk weighting reflects typical severity in the contexts we see — people-search profiles, broker presence, breach fragments, filings, and credential leaks all land at the high end.
Last updated: April 2026Designed for: executives, board members, privacy-conscious professionalsSee also: NIS2 Risk Vector
Who this is for
Executives, board members, senior professionals, HNW individuals, and anyone who wants a clear picture of what a targeted adversary can assemble about them from public and semi-public sources. No technical background is required — each check is something you can run yourself, and most take only a few minutes.
What you gain from working through it
Visibility into your own exposure. The ten categories below mirror the order a professional reconnaissance workflow follows in practice — brokers first, then breaches, filings, family, dark-web credentials, social-engineering surface.
Lower personal discoverability. Each listed action removes a pretext ingredient an attacker would otherwise build on. Fewer ingredients mean fewer usable attack paths against you and the people around you.
A harder target for targeted fraud. Whaling, CEO fraud, SIM-swap, and vishing all depend on cheap background research. Remove the raw material and the economic return on targeting you drops sharply.
A repeatable baseline. Exposure drifts — new breaches, new people-search hits, new filings. Re-run the checklist every six to twelve months to catch drift before it turns into an incident.
0 of 23 checks completed0%
Category 1: Data Broker Presence
01Data Broker PresenceHigh
Category 2: Breach Database Exposure
02Breach Database ExposureHigh
Category 3: Social Media Privacy Exposure
03Social Media Privacy ExposureMedium
Category 4: Corporate Filings and Public Registers
04Corporate Filings & Public RegistersMedium
Category 5: Property and Land Registry Records
05Property & Land Registry RecordsHigh
Category 6: Family Member Discoverability
06Family Member DiscoverabilityMedium
Category 7: Photo and Reverse-Image Searchability
07Photo & Reverse-Image SearchabilityMedium
Category 8: Domain and WHOIS Leakage
08Domain & WHOIS LeakageLow
Category 9: Dark-Web Credential Exposure
09Dark-Web Credential ExposureHigh
Category 10: Social-Engineering Surface
10Social-Engineering SurfaceHigh
Notes
Next Steps If Any Row Scored High
A high-weighted category here (data brokers, breach exposure, property registers, dark-web credentials, social-engineering surface) is rarely a single-row fix — it is a signal that the reconnaissance surface is mapped to you personally and that remediation needs to be structured rather than piecemeal.
A Corporate Audit runs this assessment end-to-end for a named executive or for a defined leadership cohort: surface mapping across the ten categories above, documented findings with severity weighting, and a prioritised remediation plan you can hand to legal, HR, or security. No client details are published; the deliverable is a bound report plus a debrief.
This checklist is for informational and self-diagnostic purposes only. It does not constitute legal or security advice. Your checklist data is stored locally in your browser and is never transmitted to our servers.