Google Chrome includes a built-in security feature called Password Leak Detection. Whenever you log into a website using a saved password, Chrome encrypts your credentials and cross-references them against Google’s massive database of known data breaches. If it finds a match, a large red warning pop-up appears, alerting you that your password has been compromised and urging you to change it immediately.
While this is an excellent security measure for casual users, it can be incredibly annoying for developers testing local environments, or security professionals who deliberately use known-bad passwords on throwaway lab accounts. If you already use a dedicated third-party password manager (like Bitwarden or 1Password) that handles breach monitoring for you, running Chrome’s duplicate scanner is unnecessary. You can disable this feature entirely.
How to Stop Chrome from Checking for Password Breaches
You can turn off Leak Detection directly from Chrome’s primary settings menu.
- Open the Google Chrome browser.
- Click the three vertical dots (⋮) in the top-right corner of the window.
- Select Settings from the drop-down menu.
- In the left-hand navigation sidebar, click on Privacy and security.
- In the main window on the right, click on Security.
- Scroll down to the “Standard protection” section.
- Look for a toggle switch labelled Warn you if passwords are exposed in a data breach.
- Click the toggle switch to turn it Off (the switch will turn grey).
Chrome will immediately stop pinging Google’s breach database when you log in. You will no longer receive the jarring red warning pop-ups when using weak or compromised passwords, leaving password security entirely in your own hands.