Use a funded session to resolve geolocation, ASN context, best-effort abuse-desk RDAP contact data when the registry publishes an abuse role, approximate location, Google Maps link, AbuseIPDB reputation, and URLhaus host context for a public IP address in one response.
IP Intel combines the signals you usually want together: where an IP appears to be, whether it has been reported for abuse, whether the registry publishes an abuse-desk contact point for reporting, and whether URLhaus has seen malware-linked host activity on that IP. It also adds deterministic enrichment that is useful in practice, including reverse DNS, normalized network type, an ASN number, and a simple risk label.
IP Lookup gives you location and ASN context. IP Abuse Check gives you reported abuse context. IP Intel is the combined version when you want both, plus a best-effort abuse-desk contact when published and a lightweight URLhaus host summary, without extra client logic.
Use a funded token from the Fund page. The endpoint is also documented in /openapi.json.
For the individual components, see IP Lookup and IP Abuse Check. Those pages are useful when you only need one side of the data.