82trust / 100

Fraud Ip

by fraud-ip-reputation in Security & trust

x402 APIPassing, checked 2 h ago

Reputation of a public IP address for anti-abuse and KYC. Returns ASN, AS-org, country, datacenter/hosting classification, Tor-exit and Spamhaus DROP flags, plus a deterministic risk score with reasons.

GET https://api.agentstools.dev/fraud/ip

Last 30 days

All checks passedSome failedAll failedNot checked
Uptime
100%
Response time
180 ms typical, 180 ms slowest 5%
Last check
2 h ago
Next check
any minute now

How to call it

# See the payment challenge (nothing is charged)
curl -i -X GET "https://api.agentstools.dev/fraud/ip?country=US&ip=185.220.101.1"
import { wrapFetchWithPayment } from "@x402/fetch";
import { x402Client } from "@x402/core/client";
import { ExactEvmScheme } from "@x402/evm/exact/client";
import { privateKeyToAccount } from "viem/accounts";

const client = new x402Client().register(
  "eip155:8453",
  new ExactEvmScheme(privateKeyToAccount(process.env.AGENT_KEY)),
);
const pay = wrapFetchWithPayment(fetch, client);

// Not sure it's safe to pay? Preflight it first for $0.03:
// GET https://toolvet.app/api/v1/check?url=https%3A%2F%2Fapi.agentstools.dev%2Ffraud%2Fip
const res = await pay("https://api.agentstools.dev/fraud/ip?country=US&ip=185.220.101.1");
console.log(await res.json());

Example input

{
  "country": "US",
  "ip": "185.220.101.1"
}

Example output

{
  "as_org": "TORSERVERS-NET",
  "asn": 60729,
  "country": "DE",
  "disclaimer": "These are automated reputation indicators, NOT a guarantee and NOT a statement about any individual. A high score is not proof of fraud; a low score is not an endorsement. Contains no personal data. Verify before acting.",
  "ip": "185.220.101.1",
  "ip_version": 4,
  "is_datacenter": true,
  "is_tor": true,
  "on_drop": false,
  "reasons": [
    {
      "dimension": "anonymity",
      "reason": "IP is a known Tor exit relay.",
      "severity": "high",
      "signal": "is_tor",
      "weight": 30
    }
  ],
  "risk_category": "medium",
  "risk_score": 48,
  "supported": true
}

Security scan

  • No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.

Recent checks

WhenResultHTTPTimePrice
2 h agoPassed402180 ms$0.005