Broker profile
Sentinex
A business dark web and breach monitoring subscription run by InfoPay, Inc. of Boston, on the same California registration as InfoTracer, IDStrong and EntityCheck. You scan with a business email and it watches for exposed domains, tax IDs, corporate cards, phone numbers and passwords. Its privacy choices page says the only data it collects on people without an account comes from cookies, while its privacy policy says it aggregates public records about users and non-users.

Sentinex overview
At a glance
- Data published
- Limited
- Re-listing frequency
- One-time
- Complaint record
- No public record
- Opt-out friction
- Moderate
- Operator opacity
- Fully disclosed
- Prior data incidents
- None documented
Each broker is scored 1 to 4 across the six dimensions above; higher means more exposure, and the overall gauge is their average.
What each dimension means
- Data published: how much and how sensitive the personal data they put out.
- Re-listing frequency: how quickly you reappear after opting out.
- Complaint record: the volume and pattern of complaints across BBB, Trustpilot, and Sitejabber. No listing, or a listing with no reviews, counts against the broker.
- Opt-out friction: how hard the removal process is to complete.
- Operator opacity: how hidden the operating company and its principals are.
- Prior data incidents: history of breaches or leaks of the data they hold.
- Category
Business breach and dark web monitoring
- Operating entity
InfoPay, Inc.
- Headquarters
227 Lewis Wharf, Boston, MA 02110
- Who it monitors
Businesses, scanned by business email address
- Phone
- Rights request
OneTrust request form, linked from sentinex.com/optout
- Non-customers
The site says it collects only cookie data on them
- Domain on the filing
sentinex.org, a parked redirect- FCRA covered?
No, per InfoPay's filing
Background
Background
Sentinex sells businesses a watch on their own exposure. It's on a data broker registration because of who owns it, not because it publishes an index of people.
- Registrant
InfoPay, Inc., Boston MA
- Domains on the filing
13
- 2025 deletion requests, all InfoPay brands
29,004, with 321 denied
InfoPay, Inc. files thirteen domains on one California registration and lists Sentinex as a DBA, beside InfoTracer, RecordsFinder, StateRecords, IDStrong, EntityCheck and others. Sentinex's privacy policy says InfoPay provides the Sentinex services.
You run a free scan with a business email address, and Sentinex reports what it finds on the dark web and in known breach sources, then sells ongoing alerts. Its homepage lists what it watches, from the corporate domain and up to ten company and personal email addresses to the EIN, the Secretary of State number, corporate cards, business addresses and phone numbers, company names and DBAs, the Dun & Bradstreet number, DEA and NPI numbers and network IPs.
That runs the other way from its lookup siblings. InfoTracer publishes records about you to whoever searches, while Sentinex tells a paying business what has already leaked about it.
The domain on the filing isn't the product. InfoPay filed sentinex.org, which serves a tiny page that redirects to a /lander placeholder. The product, and the privacy URL the filing lists, are on sentinex.com.
Data Published
Data types
Sentinex publishes nothing about you. What it holds is what customers ask it to watch, plus what it finds against those identifiers.
Business email addresses submitted for scanning, and up to ten company and personal addresses per account
Company domains, network IPs and Dun & Bradstreet numbers
EINs and Secretary of State numbers
Corporate credit card details flagged as exposed
Business addresses and phone numbers, company names and DBAs
DEA and NPI numbers, the identifiers medical practices use
Passwords and employee credentials found in breach and dark web sources
What it says about everyone else. Its privacy choices page says "If you visit Sentinex without an account, the only information we collect about you comes from cookies and similar technologies." Its privacy policy also says it collects publicly available records and aggregates them "about individuals, which will include users and non-users." The two don't sit easily together, so an access or deletion request is the way to find out which applies to you.
Sole traders should read the field list twice. For a one-person business the business address is often a home and the company phone is often a personal mobile, so these company fields are still personal data.
Contact
Contacts & links
- Operating entity
InfoPay, Inc.
- Registered address
227 Lewis Wharf, Boston, MA 02110
- Privacy contact
- Phone
- Filed compliance contact
- Filed phone
Key links
Requests go through OneTrust. Every customer route on the privacy choices page links one OneTrust form on OneTrust's EU portal, so the address bar reads privacyportal-eu.onetrust.com rather than sentinex.com. The link comes from Sentinex's own page.
Network
Sister brands
One InfoPay registration covers thirteen domains. Sentinex is the only one selling to businesses rather than about people.
If a search engine put your name in front of a stranger, this is the wrong brand. Sentinex doesn't publish a people index. Start with InfoTracer and work through the siblings that list you.
Reputation
Trust signals
Sentinex has no Trustpilot profile, no BBB listing under its name and no SmartCustomer reviews, so there's no complaint record to read either way.
FAQ
Q & A
How do I remove my information from Sentinex?
Through the OneTrust request form linked from sentinex.com/optout. Pick your country and state, say whether you're filing for yourself or as an authorized agent, and choose the right you want, such as Request to Delete Personal Information or Request to Opt-Out. Our Sentinex removal guide walks the form.
Does Sentinex hold data on me if I've never used it?
Its privacy choices page says the only data it collects on visitors without an account comes from cookies. Its privacy policy also describes aggregating public records about users and non-users. If you want an answer on the record, file an access or deletion request.
Why is the privacy form on a OneTrust address?
Sentinex runs its requests through a form hosted on OneTrust's EU portal rather than on its own domain. The link is legitimate and comes from Sentinex's own page, though the address looks nothing like sentinex.com.
The registry lists sentinex.org, and that page is empty. Is it the right site?
No. sentinex.org serves a placeholder that redirects to a /lander page. The product is sentinex.com, which is also where the privacy URL on InfoPay's filing points.
Take yourself off data broker sites
Redact scans 120+ data broker sites from your device, finds where your details are listed, and submits the removal requests for you. If a broker relists you, it files again.
September 10, 2026 · Drawn from an August 18, 2026 walk of the OneTrust request form. Looked at again today alongside the homepage, sentinex.com/optout, the privacy policy dated August 20, 2026, the parked sentinex.org, California's registry and the three review sites. Sentinex has rewritten its privacy choices page since the walk, so the non-customer wording is quoted from the new version, and that page's cookie data removal link is broken.
























