IP Fraud Score
IP Fraud Score
Turn the signals behind an IP into a single fraud risk score from 0 to 100, so your rules can act on one number.
What is an IP fraud score?
An IP fraud score condenses everything risky about an IP address, VPN, proxy and Tor usage, datacenter hosting, and any history of abuse, all rolled into a single number from 0 to 100. A low score suggests an ordinary residential visitor; a high score suggests anonymised or abusive infrastructure. It lets you write simple rules (“review orders above 75”) instead of juggling many separate flags.
How the fraud score is built
Each signal contributes weight to the final 0–100 value.
Anonymiser usage
VPN, proxy and Tor each add risk.
Hosting origin
Datacenter and cloud IPs score higher than residential ones.
Abuse history
Known bad behaviour from the range increases the score.
Geo consistency
Mismatched location signals raise suspicion.
Velocity
Unusual request patterns from the IP add weight.
Single 0–100 score
All signals roll up into one tunable number.
Where teams use it
Checkout risk
Hold or review high-score transactions.
Signup gating
Add verification above a score threshold.
Login defense
Step up authentication for risky IPs.
Manual review queues
Prioritise the riskiest traffic for analysts.
Explore related detection tools
Try Our Other Tools
Frequently asked questions
Why Choose IPScanner
Teams use IPScanner to tell real users apart from masked and automated traffic.
Accuracy you can measure
Verdicts come with a 0 to 100 confidence score, so you tune the threshold to your own risk instead of trusting one number.
Built to scale
The API runs on infrastructure sized for production traffic, with a 99.99% uptime target for business-critical use.
Data that stays fresh
We refresh VPN, proxy, and Tor lists continuously, so newly spun-up servers get caught quickly.
Easy to wire in
A plain REST API works with any language or framework. Most teams are live the same afternoon.
Documentation that's honest
Worked examples in curl, JavaScript, and Python, plus straight notes on what each signal does and doesn't mean.
People who know the domain
Support comes from engineers who work on IP detection every day, not a generic help desk.