Live: Tor + abuse feeds refreshed every 6 hours
What it detects
- Allow your own office network and QA devices
- Block known bad actors permanently
- CIDR and ASN ranges, not just single values
- Block always beats allow on a conflict
- Bulk import from another provider's export
When to use it
Stop flagging your own staff, and make a fraud investigation stick.
Questions
Do rules apply to every endpoint?
Yes, including the unified signup score, where they apply per component. An allow rule on your office IP zeroes the IP component of a whole-signup score rather than being ignored there.
What happens if a value matches both an allow and a block rule?
Block wins. The matcher returns on the first block it finds and only falls back to an allow, because the cost of wrongly admitting a known bad actor is higher than the cost of wrongly challenging someone.
Can I migrate my existing lists?
Yes. The import endpoint accepts plain text or CSV, one entry per line, and auto-detects the kind of each value. Headers and extra columns from another provider's export are skipped rather than rejected.
How to do this
Step-by-step, with the trade-offs named.
Other products
Unified Signup Score
Score a whole signup — IP, email, phone, domain and device — in a single request.
IP Intelligence
VPN, proxy, Tor and datacenter detection with geo and ASN context.
Email Validation
Disposable, role-based and free-provider detection with MX and provider verification.
Phone Validation
Numbering-plan validation, line type, and VoIP or premium-rate detection.
Domain Intelligence
Registration age via RDAP, mail configuration, and lookalike detection.
Device Intelligence
Browser fingerprinting and bot detection that survive a VPN and a new email.
Fraud Reporting Network
Report confirmed fraud and it strengthens every future score, for everyone.
AI Agent Authorization
Decide which AI agents may act on your site — by cryptographic identity, not by guessing.