beta

API

Every page is built from these endpoints. Send an API key as Authorization: Bearer vpndb_…; create one under Account.

This page

GET /api/v1/meta

curl -s -H 'Authorization: Bearer vpndb_EXAMPLE_NOT_A_REAL_KEY' \
  '/api/v1/meta'

All endpoints

GET /api/v1/ip/{ip}Who operates an address
GET /api/v1/ip/{ip}/historyEvery week of an address
GET /api/v1/prefix/{cidr}Any range, and who is inside it
GET /api/v1/prefix/{cidr}/addressesEvery address of a prefix, in a window
GET /api/v1/prefix/{cidr}/timelineHow a prefix was probed, day by day
GET /api/v1/asn/{asn}A network and its providers
GET /api/v1/asn/{asn}/networksEvery prefix of a network
GET /api/v1/org/{id}A company and all its networks
GET /api/v1/org/{id}/networksEvery prefix of a company
GET /api/v1/country/{cc}The infrastructure located in a country
GET /api/v1/countriesEvery country at a glance
GET /api/v1/service/{tag}A provider's profile
GET /api/v1/service/{tag}/networksEvery network a provider exits from
GET /api/v1/servicesEvery provider at a glance
POST /api/v1/bulkMany addresses at once
GET /api/v1/searchResolve free text
GET /api/v1/suggestSuggestions as you type
GET /api/v1/metaThe dataset
GET /api/v1/openapi.yamlThis specification
GET /api/v1/sourcesWhere the data comes from
API documentationOpenAPI specification
Sign in

Getting started

Your first lookup

Search accepts an address, prefix, ASN or provider name and infers the entity type.

A single search field accepts four entity types. The type is inferred from the input; no selection is required.

You typeYou get
45.83.91.1The verdict for that address
37.19.196.0/23The prefix, with the providers inside it
AS9009 or 9009The network, with its provider distribution
nordvpnThe provider profile

Then follow the evidence

  1. Read the verdict and the confidence. Confidence 3 on a single provider supports acting on the attribution.
  2. Open Evidence for the method, observation count and observation dates.
  3. Use Pivots to move between entities. Each is annotated with the size of the result set, narrowest first.
  4. Each lookup is recorded in the investigation graph at the top of the page.