Check one identifier.
No account needed. One email address, username, or domain, run against the breach index and the device records. Every value comes back masked, and the count beside the rows is what the index reported rather than what is on screen.
An answer lands here: the breach sources that held the term with the identifier masked, and the sites device records were taken from.