Every juror is named. Every limitation is visible.

EDGE: READY
More options
What are you checking?
EXAMPLE Checked static example Cache n/a NOT LIVE
IP

8.8.8.8

EXAMPLERUN A LIVE CHECK
ASN
AS15169 · Google LLCgoogle.com
LOCATION
US · California, Mountain View
IPBot
🇺🇸 US · California, Mountain View
IPinfo
🇺🇸 US · AS15169
GeoLite2
🇺🇸 US
DB-IP
🇺🇸 US · California, Mountain View
Bright Data
🇺🇸 US · California, Mountain View
ROUTE
ANNOUNCED 8.8.8.0/24
IP TYPE
PUBLIC INTERNET INFRASTRUCTURE
Not assessedIPJURY SCOREEXPERIMENTAL · NOT A PROBABILITY IPJURY VERDICT EXAMPLE

Run a live check for an evidence verdict and experimental interpretation.

Why this result · full calculation

Run a live check. The example is not scored.

    Evidence confidence is not prediction accuracy. A provisional range spans policy outcomes for unanswered questions; it is not a probability interval.

    OPEN FULL EVIDENCE REPORT

    JURY READY

    Enter an address, or check your own connection · the example below is replaced in place

    FULL REPORT IDENTITY · SOURCE MATRIX · SIX-AXIS VERDICT · EVIDENCE RECORD
    EVIDENCE SNAPSHOTSEPARATE AXES · NOT A SCORE
    ANONYMITY
    No direct anonymity evidence observed
    ABUSE EVIDENCE
    No abuse evidence in covered sources
    COVERAGE
    6/7 jurors responded
    01

    IDENTITY

    COORDINATES
    not loaded in static example
    ROUTING
    ROUTE ORIGIN OBSERVED
    PREFIX
    8.8.8.0/24
    TIMEZONE
    America/Los_Angeles
    REVERSE DNS
    not loaded in static example
    STACK
    IPv4
    RANGE
    8.8.8.0 – 8.8.8.255
    REGISTRY
    not loaded in static example
    02

    SOURCE MATRIX

    4 location sources agree at country level · — not covered · W/H withheld

    SIGNALIPBotIPinfoGeoLite2DB-IPIPtoASN
    COUNTRYUSUSUSUS
    CITYCalifornia, Mountain ViewCalifornia, Mountain View
    ASNAS15169AS15169AS15169AS15169
    PROXYNO
    VPNW/H
    TORNO
    HOSTINGNO
    ABUSENO
    03

    SIX-AXIS VERDICT

    NETWORK ROLEHIGH
    Public internet infrastructure

    Service role · anycast context · operator identity

    ANONYMITYMEDIUM
    No direct anonymity evidence observed

    No proxy, VPN, or Tor finding in covered fields

    ABUSE EVIDENCEMEDIUM
    No abuse evidence in covered sources

    This means “not observed,” never “clean”

    GEO CONTEXTLOW
    US · single geolocation estimate

    Country-level context; physical location not proven

    ROUTINGHIGH
    Route origin observed · RPKI state withheld by licence

    Origin ASN · announced prefix · route-origin conflict

    COVERAGEMEDIUM
    6/7 jurors responded

    Named jurors · lineage families · abstentions visible

    04

    EVIDENCE RECORD

    JURORAXISCLAIMCONF.STATUS
    Network identityIPBot networknetwork roleAS15169 · Google LLCHIGHRESPONDED
    Operator and role profileIPBot classificationnetwork rolepublic infrastructureHIGHRESPONDED
    Anonymity signalsIPBot classificationanonymityno direct proxy/VPN/Tor evidenceMEDIUMRESPONDED
    Direct threat evidenceIPBot evidenceabuseno direct record in covered evidenceMEDIUMRESPONDED
    REPORT ipjury.com/check/8.8.8.8 EXPERIMENTAL INDEX
    TERMINAL curl ipjury.com/8.8.8.8 irm ipjury.com/8.8.8.8
    IPJURY.COM · EVIDENCE, NOT AN ENTERTAINMENT SCORE

    IPJury uses the IP2Location LITE database for IP geolocation. This product includes GeoLite Data created by MaxMind, available from https://www.maxmind.com. IP Geolocation by DB-IP. Full source credits: source register.

    05

    THE SOURCE REGISTER

    Every enabled or withheld source is listed with its evidence family, license review date, cache policy, privacy behavior, and limitations.

    Loading current source registry…
    IPBot canonical evidenceCONDITIONAL · HOST AUDIT REQUIRED
    five gated evidence families

    Public-IP lookup remains fail-closed until the deployed IPBot build has an approved, unexpired field-level public-display profile. When active, IPJury requests only sanitized network, routing, classification, direct-evidence, and geolocation fields and omits global scores, raw sources, and internal rule identifiers.

    IP2Location LITE DB11 (via IPBot)CONDITIONAL · SHOWN UNDER ITS OWN NAME
    ip2location lineage · country, region, city

    The LOCATION row labelled IP2Location is IP2Location LITE DB11 data served through IPBot's audited build; IPBot is the delivery path, not a second estimate, so the database appears once in the consensus and once in the matrix. Region and city are estimates about the containing block. Attribution: IPJury uses the IP2Location LITE database for IP geolocation.

    Reverse DNS via Cloudflare public DNSENABLED · WEAK CLUE
    dns-ptr lineage

    Looks up a PTR hostname derived from the target IP. PTR is operator-controlled and never treated as identity proof.

    IPinfo LiteWITHHELD UNTIL TOKEN CONFIGURED
    independent country / ASN context

    Optional country and ASN evidence. When enabled, the target IP is disclosed to IPinfo and required attribution appears in the record.

    Bright Data geolocation (test endpoint)ENABLED AS CONTEXT · NO PUBLISHED TERMS · IPv4 ONLY
    brightdata-undeclared lineage · country, region, city

    Bright Data's geo.brdtest.com endpoint answers with a country, region and city for the containing block. It publishes no terms and does not declare the database behind it, so it is shown on the owner's decision of 2026-09-15 as a context row only: it never votes in the country consensus, never moves the band and never reaches the score, and its agreement with another row is not counted as corroboration. IPv6 targets are never sent, because the endpoint's IPv6 answers named the wrong network in testing. When enabled, the target IPv4 address is disclosed to Bright Data. A permission request is drafted; the row is removed the same day on any objection. Attribution: geolocation context by Bright Data.

    DB-IP City LiteENABLED · LOCAL SIDECAR
    independent geo estimate · CC BY 4.0

    A locally held monthly edition of the DB-IP City Lite database, read on the first-party ledger host so the target IP is never sent to DB-IP. Contributes its own country, region, and city row to the location consensus, always scoped to the containing block. Attribution: IP Geolocation by DB-IP.

    MaxMind GeoLite2 CountryENABLED · LOCAL SIDECAR
    independent country estimate

    A locally held GeoLite2 Country edition, refreshed twice weekly under the GeoLite EULA's update duty and read on the first-party ledger host — the target IP is never sent to MaxMind. Contributes a country-level row to the location consensus. City-level GeoLite data is not used: MaxMind declines it for this account under the US bulk sensitive data transfer rules, and that refusal is respected rather than sourced around. This product includes GeoLite Data created by MaxMind, available from https://www.maxmind.com.

    MaxMind GeoLite2 ASNENABLED · LOCAL SIDECAR
    independent prefix-to-ASN mapping

    A locally held GeoLite2 ASN edition joining the routing axis beside IPtoASN, so the announced-origin answer is corroborated or disputed across two independent tables. Scoped to the containing block, never the single address. This product includes GeoLite Data created by MaxMind, available from https://www.maxmind.com.

    abuse.ch Feodo TrackerENABLED · FIRST-PARTY LEDGER
    abusech-feodo lineage · CC0

    The published botnet command-and-control blocklist, imported on a schedule and held with its editions so the record can say when IPJury first saw a listing. Membership is direct adverse evidence on the abuse axis; absence means this source did not observe the address — never that it is clean. Data by Feodo Tracker (abuse.ch), released under CC0.

    Tor Project bulk exit listWITHHELD UNTIL THE LEDGER IS REACHABLE
    tor-exit-list lineage · first-party ledger

    The published exit list is imported on a schedule and held with the edition it came from, so the record can say when IPJury first saw an address on it and when its membership last changed. Membership is a network role on the anonymity axis and never an abuse finding. Absence means this source did not list the address — not that the address is not a Tor exit — and once an edition ages past its refresh window the juror abstains instead of continuing to assert.

    Mullvad VPN relay listWITHHELD UNTIL THE LEDGER IS REACHABLE
    mullvad-relay-list lineage · first-party ledger

    Mullvad publishes the list of addresses its relays are reached on, and it is imported on a schedule and held with the edition it came from, so the record can say when IPJury first saw an address on it and when that listing ended. The published field is the address a relay listens on, so membership never asserts where traffic leaves. Running a VPN relay is a network role on the anonymity axis and never an abuse finding. Absence means this source did not list the address — not that the address is not a VPN — and once an edition ages past its refresh window the juror abstains instead of continuing to assert.

    IANA special-purpose registryWITHHELD UNTIL THE LEDGER IS REACHABLE
    iana-special-use lineage · first-party ledger

    The registry's own designation for an address block, with its three-state answer on global reachability preserved rather than flattened. It states what a block is set aside for; it says nothing about the behaviour of anything inside it.

    IPtoASN prefix-to-origin tableWITHHELD UNTIL THE LEDGER IS REACHABLE
    iptoasn lineage · first-party ledger

    Which network announces the block an address sits in, held as the published start–end range rather than reshaped into prefixes the source never named. Because the ledger keeps editions, the record can also say how many times that announcement has changed since IPJury first saw it. An announcing network is who routes the block — not who uses the address, and not what they do with it.

    RIR delegated statisticsWITHHELD UNTIL THE LEDGER IS REACHABLE
    rir-delegated lineage · first-party ledger · APNIC, ARIN, LACNIC, AFRINIC

    Each registry's daily delegated-statistics file, read from that registry's own server and held with its editions, gives the REGISTRY row a source of its own: the country a block was first allocated or assigned to, on what date, by which registry. That is a registration fact about the block and never a statement of where the address is in use, so it is shown beside the location estimates and never counted among them. Blocks a registry lists as available or reserved are recorded as not allocated, never as a country. The RIPE NCC file is not read — its site-wide terms limit reuse to non-commercial purposes — so addresses RIPE NCC administers abstain on this row rather than borrowing another reading.

    Native ASN summary and experimental interpretation

    The source register above separately declares Cloudflare Radar HTTP Summary and IPJury's own interpretation policy. A configured API token does not enable raw-data publication: the independent Radar display profile must also be active. When that profile is active, the human/bot percentages on the ASN TRAFFIC row come from IPJury's own server-side Radar HTTP summary under CC BY-NC 4.0, used non-commercially on this free tool with attribution (owner review 2026-09-15, docs/licenses/cloudflare-radar.md); the chart itself stays an explicit click. Native figures are aggregate ASN context, not another juror or an individual-IP probability. The score is a versioned, non-calibrated interpretation of existing evidence; its sources are not counted as extra corroborating databases.

    Optional publisher chart — not an evidence juror

    The in-page ASN Human/Bot view is Cloudflare Radar's official BotHumanStackedBar for HTML requests over the last seven days. Cloudflare's licensing policy makes embeddable graphs available under CC BY 4.0, separately from the noncommercial raw API data. The original chart, legend, timestamp and attribution remain visible. It loads only on request and collects publisher usage metrics. No percentages are copied into the six-axis verdict, API, cache or export; it describes an ASN, not the checked IP's behavior.

    06

    A NUMBER NEEDS ITS EVIDENCE

    IPJury keeps network type, anonymity, abuse, location, routing and coverage separate. Its optional experimental index explains a published policy over those facts; it never replaces the named evidence verdict or conceals missing information.

    MYSTERY SCORE MODEL
    83/100

    What does 83 measure? Who supplied it? Is hosting being treated as abuse? Did one heuristic outweigh a direct record? A number cannot tell you that two of its sources flatly contradicted each other.

    • Cross-axis averaging
    • Hidden source lineage
    • Missing source treated as “false”
    • Disagreement averaged away
    • Platform outcome implied
    EVIDENCE + EXPLAINED INTERPRETATION
    BANDDISPUTED RULEsource-conflict ROLEhosting ANONYMITYno direct evidence ABUSEno record observed GEOcountry disputed ROUTINGorigin observed COVERAGE6/7 responded

    One rule read one axis and named the state. The axes it did not read stay beside it. “Disputed” and “too little coverage to say” are answers a single number cannot express.

    07

    THE FIVE RULES OF EVIDENCE

    [ READ FULL METHOD ]
    1. 01

      Vote only on the same axis

      A proxy flag, an abuse report, a hosting role, and a city estimate are not interchangeable votes.

    2. 02

      Direct evidence outranks a prior

      An exact-IP record is different from an inference based on the ASN, prefix, or network category.

    3. 03

      Deduplicate source lineage

      Three websites backed by one upstream database do not become three independent evidence families.

    4. 04

      Let jurors abstain

      Timeout, no IPv6 coverage, disabled license, or missing record is shown—not silently converted to “no.”

    5. 05

      Explain dissent

      CGNAT, anycast, reassignment, data age, and route context can all produce legitimate disagreement.

    09

    QUESTIONS THE SCORE CANNOT ANSWER

    Which sources does IPJury query to build a record?

    Every enabled and withheld source is named on this page with its evidence family, license review date, cache policy, privacy behavior and known limitations. Nothing contributes to a verdict without appearing there.

    Why are some listed sources marked withheld or planned?

    Because a source stays disabled until its license terms, credentials or local dataset are actually in place. IPJury declares those sources rather than hiding them, so the coverage gap is visible.

    Is the address I look up disclosed to third parties?

    For a public address, yes: the target is sent to the enabled sources shown on this page, each with its own data practices. Private and reserved addresses are classified locally and are not sent anywhere.

    Does IPJury use results scraped from other IP checkers?

    No. Scraped competitor output is excluded, along with endpoints licensed for noncommercial use only and any source whose public display rights are not established.

    IPJURY // RECORD

    Methodology