Registration country and usage country are two different claims.

EDGE: READY
More options
What are you checking?
EXAMPLE Checked static example Cache n/a NOT LIVE
IP

8.8.8.8

EXAMPLERUN A LIVE CHECK
ASN
AS15169 · Google LLCgoogle.com
LOCATION
US · California, Mountain View
IPBot
🇺🇸 US · California, Mountain View
IPinfo
🇺🇸 US · AS15169
GeoLite2
🇺🇸 US
DB-IP
🇺🇸 US · California, Mountain View
Bright Data
🇺🇸 US · California, Mountain View
ROUTE
ANNOUNCED 8.8.8.0/24
IP TYPE
PUBLIC INTERNET INFRASTRUCTURE
Not assessedIPJURY SCOREEXPERIMENTAL · NOT A PROBABILITY IPJURY VERDICT EXAMPLE

Run a live check for an evidence verdict and experimental interpretation.

Why this result · full calculation

Run a live check. The example is not scored.

    Evidence confidence is not prediction accuracy. A provisional range spans policy outcomes for unanswered questions; it is not a probability interval.

    OPEN FULL EVIDENCE REPORT

    JURY READY

    Enter an address, or check your own connection · the example below is replaced in place

    FULL REPORT IDENTITY · SOURCE MATRIX · SIX-AXIS VERDICT · EVIDENCE RECORD
    EVIDENCE SNAPSHOTSEPARATE AXES · NOT A SCORE
    ANONYMITY
    No direct anonymity evidence observed
    ABUSE EVIDENCE
    No abuse evidence in covered sources
    COVERAGE
    6/7 jurors responded
    01

    IDENTITY

    COORDINATES
    not loaded in static example
    ROUTING
    ROUTE ORIGIN OBSERVED
    PREFIX
    8.8.8.0/24
    TIMEZONE
    America/Los_Angeles
    REVERSE DNS
    not loaded in static example
    STACK
    IPv4
    RANGE
    8.8.8.0 – 8.8.8.255
    REGISTRY
    not loaded in static example
    02

    SOURCE MATRIX

    4 location sources agree at country level · — not covered · W/H withheld

    SIGNALIPBotIPinfoGeoLite2DB-IPIPtoASN
    COUNTRYUSUSUSUS
    CITYCalifornia, Mountain ViewCalifornia, Mountain View
    ASNAS15169AS15169AS15169AS15169
    PROXYNO
    VPNW/H
    TORNO
    HOSTINGNO
    ABUSENO
    03

    SIX-AXIS VERDICT

    NETWORK ROLEHIGH
    Public internet infrastructure

    Service role · anycast context · operator identity

    ANONYMITYMEDIUM
    No direct anonymity evidence observed

    No proxy, VPN, or Tor finding in covered fields

    ABUSE EVIDENCEMEDIUM
    No abuse evidence in covered sources

    This means “not observed,” never “clean”

    GEO CONTEXTLOW
    US · single geolocation estimate

    Country-level context; physical location not proven

    ROUTINGHIGH
    Route origin observed · RPKI state withheld by licence

    Origin ASN · announced prefix · route-origin conflict

    COVERAGEMEDIUM
    6/7 jurors responded

    Named jurors · lineage families · abstentions visible

    04

    EVIDENCE RECORD

    JURORAXISCLAIMCONF.STATUS
    Network identityIPBot networknetwork roleAS15169 · Google LLCHIGHRESPONDED
    Operator and role profileIPBot classificationnetwork rolepublic infrastructureHIGHRESPONDED
    Anonymity signalsIPBot classificationanonymityno direct proxy/VPN/Tor evidenceMEDIUMRESPONDED
    Direct threat evidenceIPBot evidenceabuseno direct record in covered evidenceMEDIUMRESPONDED
    REPORT ipjury.com/check/8.8.8.8 EXPERIMENTAL INDEX
    TERMINAL curl ipjury.com/8.8.8.8 irm ipjury.com/8.8.8.8
    IPJURY.COM · EVIDENCE, NOT AN ENTERTAINMENT SCORE

    IPJury uses the IP2Location LITE database for IP geolocation. This product includes GeoLite Data created by MaxMind, available from https://www.maxmind.com. IP Geolocation by DB-IP. Full source credits: source register.

    05

    REGISTRATION COUNTRY VERSUS USAGE LOCATION

    Do registration country and location estimates agree?

    Where both are returned, compare the administrative registration country with each named location estimate. Agreement describes the records; disagreement identifies a question to investigate. Neither determines a device’s physical presence.

    Evidence scope and register licence-review dates — not live lookup dates
    SourceRegister review
    IPBot Network Identity
    DB-IP City Lite
    MaxMind GeoLite2 Country

    Source availability depends on the current deployment and each returned record. These review dates do not establish when a particular IP was observed. Method axis-scope-2026-09-15 · Score ipjury-score-v3.

    "Native IP" is a phrase that arrived through proxy marketing, and it usually goes undefined by the people selling it. In this tool it means comparing two returned records, not applying a universal certification standard.

    Two different claims about one address

    Country appears more than once in an IP record, and the values come from different places. IPJury keeps them apart because they answer different questions.

    Registration country
    From the regional internet registry's delegated statistics — the administrative record of which economy a block was allocated to. It is administrative context; the returned field may be absent or may lag an update.
    Usage-location estimate
    A geolocation dataset's inference about where the address is actually used, built from operator declarations, routing behavior, latency, and observed traffic. It describes deployment, and it can update without any registry change.
    Current edge context
    What the serving network observed for the request in front of it. Useful, narrow, and relevant only to a live connection.

    When registration and usage agree, the axis reports agreement. When they diverge, IPJury shows the divergence with both sources named rather than picking a winner.

    Why the distinction is worth checking

    Two audiences care intensely. Cross-border sellers and account operators find that a mismatch between where an address is registered and where it presents can add verification friction at signup or review. Streaming audiences encounter the same divergence because regional licensing is enforced against location estimates, and those estimates are exactly the value that a relocated block puts in question.

    The useful framing is friction, not access. A mismatch is a fact about records that some systems weigh. It is not a lever, and no result here predicts what any service will do.

    Mismatch has legitimate causes

    A divergence is a prompt to look closer, not a verdict of deception. Possible explanations include:

    • Multinational allocation. A carrier or enterprise registered in one economy routinely deploys blocks across many. The registry records the holder, not the deployment.
    • Anycast. One prefix announced from many locations at once has a single registry country and no single usage country. For CDN and resolver infrastructure this is the design, not an anomaly.
    • Transfers and re-announcement. Address space is bought, leased, and reassigned. A block that served one country for a decade can serve another the day after a transfer, and datasets carry the old association for a while.
    • Geofeed corrections. Operators publish their own location data in the RFC 8805 geofeed format precisely to correct geolocation guesses. A recent geofeed can legitimately move an address away from where the registry sits.
    • Dataset lag. Independent geolocation providers refresh on different cycles, so two of them can disagree on a re-deployed block for weeks. Update timing is one possible explanation, not something a mismatch alone proves.

    What a mismatch does and does not establish

    It establishes that two records about one address point at different countries, sourced and dated. That is genuinely useful: it is the concrete question to ask a seller who advertised a country, and it explains why one tool shows you a flag another does not.

    It does not establish physical position, tunnelling, dishonesty, or how a destination will classify the address. Geolocation is an estimate, and each source covers different levels. A country-only source does not confirm a city or postcode. IPJury reports the country comparison and stops there, because that is where the evidence stops.

    06

    A NUMBER NEEDS ITS EVIDENCE

    IPJury keeps network type, anonymity, abuse, location, routing and coverage separate. Its optional experimental index explains a published policy over those facts; it never replaces the named evidence verdict or conceals missing information.

    MYSTERY SCORE MODEL
    83/100

    What does 83 measure? Who supplied it? Is hosting being treated as abuse? Did one heuristic outweigh a direct record? A number cannot tell you that two of its sources flatly contradicted each other.

    • Cross-axis averaging
    • Hidden source lineage
    • Missing source treated as “false”
    • Disagreement averaged away
    • Platform outcome implied
    EVIDENCE + EXPLAINED INTERPRETATION
    BANDDISPUTED RULEsource-conflict ROLEhosting ANONYMITYno direct evidence ABUSEno record observed GEOcountry disputed ROUTINGorigin observed COVERAGE6/7 responded

    One rule read one axis and named the state. The axes it did not read stay beside it. “Disputed” and “too little coverage to say” are answers a single number cannot express.

    07

    THE FIVE RULES OF EVIDENCE

    [ READ FULL METHOD ]
    1. 01

      Vote only on the same axis

      A proxy flag, an abuse report, a hosting role, and a city estimate are not interchangeable votes.

    2. 02

      Direct evidence outranks a prior

      An exact-IP record is different from an inference based on the ASN, prefix, or network category.

    3. 03

      Deduplicate source lineage

      Three websites backed by one upstream database do not become three independent evidence families.

    4. 04

      Let jurors abstain

      Timeout, no IPv6 coverage, disabled license, or missing record is shown—not silently converted to “no.”

    5. 05

      Explain dissent

      CGNAT, anycast, reassignment, data age, and route context can all produce legitimate disagreement.

    09

    QUESTIONS THE SCORE CANNOT ANSWER

    What is a native IP?

    Here it means comparing registration country with location estimates where both exist. It is not a certificate of physical presence, dedicated use or platform acceptance.

    Where does the registration country come from?

    The returned registration-country field carries its named provenance. It is administrative context and may be missing; it must not be inferred from location agreement.

    Does a country mismatch mean the address is fake or tunnelled?

    No. Multinational allocations, anycast prefixes, address transfers, operator-published geofeed corrections and ordinary dataset lag all produce honest mismatches.

    Will a native address work better with a service that checks my region?

    IPJury cannot answer that and does not try. The comparison tells you whether two records about the address agree; what any service does depends on signals no IP tool can observe.

    IPJURY // RECORD

    Methodology