After the Synthient Stealer Log Threat Data Breach (https://synthient.com/blog/the-stealer-log-ecosystem) I realised: you can be in a vulnerable spot if you happen to have a different password for every website, BUT the same email address.
Hopefully this is useful to others who want to be able to find out 'which' login was likely Pwned when they get that alert.