Bot detection and fraud prevention API with IP reputation and email validation.
IPASIS is an API for bot detection and fraud prevention that combines IP intelligence and email validation into a single risk verdict. It evaluates signals such as VPN and proxy usage, datacenter and hosting detection, disposable and newborn email domains, Tor exit nodes, gibberish usernames, and abuse-reported IPs, then returns a trust score from 0 to 100, with 0-39 classified as trusted, 40-79 as suspicious, and 80-100 as bot or fraud risk. Each score is returned with the specific reasons behind it rather than a black-box result.
The API is designed for real-time use in signup, login, and checkout flows, with sub-20ms latency and multi-region deployment across the US, EU, and Asia. Data is drawn from multiple threat feeds including RIPEstat, MISP, X4BNet, GeoLite2, RDAP/Whois, WhoisDS, and community disposable-email lists, updated sub-hourly. It tracks over 120,000 disposable domains and 210,000 newborn domains across more than 10 real-time threat feeds.
It targets use cases including preventing fake signups, detecting bots on login, filtering fake leads, preventing affiliate fraud, stopping coupon abuse, and securing checkout flows against chargebacks. The service offers a free tier of 100 requests per day with no credit card required, TLS-encrypted traffic, GDPR compliance with no PII stored or logged, a data processing agreement for enterprise customers, and 99.99% uptime.
Yes, IPASIS offers 100 free requests per day with no credit card required.
Response times are sub-20ms, with typical latency of 20-30ms at p95.
IPASIS is a single API call that can be set up in about 2 minutes with any language.
It's built for developers who need fraud and bot detection for signup, login, checkout, and lead-generation flows without enterprise complexity or cost.
IPASIS is GDPR compliant with no PII stored or logged, encrypts all API traffic over TLS, and offers a DPA for enterprise customers.
Show your product to thousands of developers
· 100k monthly pageviews
· 7k newsletter subscribers
The industry’s first hacker API that helps increase productivity towards creative bug bounty hunting.
Passwords which have previously been exposed in data breaches.
Perform OSINT via Intelligence X.
Find leaked or exposed credentials by email, username, phone, domain, hash, or breach origin.
Managed User Authentication Service.
Programmatic interfaces to engage with the Microsoft Security Response Center (MSRC).