AbuseIPDB logo
AI agent integrationAbuseIPDB

AbuseIPDB integration for multiplayer collaboration with AI agents using Claude Code or Codex

One governed connection your whole team and its AI agents can share, with approved actions and human review, so working in AbuseIPDB never means pasting credentials into a prompt.

Use AbuseIPDB from Claude Code

Bring AbuseIPDB context into engineering work while Type keeps app access attached to the teammate and workspace.

Automate AbuseIPDB with Codex

Let coding agents ask for the right app action, preserve conversation context, and keep humans in the approval loop.

Connect open agent workflows

Use Type as the collaboration layer around OpenClaw and other LLM workflows that need app access.

Security & Identity

What the AbuseIPDB integration exposes

AbuseIPDB is a project dedicated to helping make the internet safer by providing a central repository for reporting and checking IP addresses associated with malicious activities.

One connection, many teammates

Connect AbuseIPDB once, then decide which teammates can use it for threads, automations, skills, and coding work.

Representative actions

  • Retrieve IP Blacklist

    Retrieves a list of the most reported malicious IP addresses from AbuseIPDB's database. Use this tool to build dynamic blocklists, threat intelligence feeds, or firewall rules. The blacklist is updated hourly and contains IPs with high abuse confidence scores. Free accounts receive up to 10,000 IPs. Paid subscriptions unlock filtering options (confidenceMinimum, country filters) and higher limits (up to 500,000 IPs).

  • Bulk Report

    Submit multiple IP abuse reports to AbuseIPDB in bulk via CSV upload. Use this when you need to report many malicious IPs at once instead of one-by-one. Returns the count of successfully saved reports and details about any invalid entries.

  • Check Block

    Tool to check the reputation of all IP addresses in a CIDR range. Use when you need aggregated abuse data for a network block.

  • Check IP Reputation

    Tool to check the reputation of an IP address. Use when you need to determine if an IP address has been reported for abusive activity within a specified look-back period. Example: CheckIp(ipAddress='8.8.8.8', maxAgeInDays=90).

  • Clear Address Reports

    Tool to remove all reports associated with a specific IP address. Use when you need to purge your own abuse records after verifying control of the IP.

Connection

API and auth details

AbuseIPDB exposes threat-intelligence APIs for checking IP reputation, checking CIDR blocks, reporting abusive IPs, retrieving blacklists, viewing usage limits, and integrating abuse reports or IP checks into firewalls, Fail2Ban, SIEM, and network-defense workflows.

FAQ

Questions people ask before connecting AbuseIPDB

Can Claude Code use AbuseIPDB?

Yes. Type lets an AI teammate use connected AbuseIPDB actions from a governed workspace context, so Claude Code work can reference the app without copying credentials into a local prompt.

Can Codex work with AbuseIPDB through Type?

Yes. Codex can collaborate through Type with app context, skills, and approved actions. The AbuseIPDB catalog entry includes public integration details and example capabilities where available.

Is this the same as a AbuseIPDB MCP server?

Type exposes connected app capabilities to AI teammates and coding agents through Type's integration layer. Teams use it when they want shared app access, human review, and teammate-level permissions around agent work.

More security & identity apps for AI teammates