AbuseIPDB logo
ConnectorAbuseIPDB

AbuseIPDB integration for Claude and Codex

Create a AbuseIPDB connection, then control which Spaces can use its approved tools and data without pasting credentials into prompts or threads.

Use AbuseIPDB from Claude

Add the AbuseIPDB connection to a Space that runs Claude, then use it from every channel in that Space.

Use AbuseIPDB from Codex

Add the AbuseIPDB connection to a Space that runs Codex, then use it from every channel in that Space.

Use AbuseIPDB from Sidekick

Connect your own OpenClaw to Sidekick while Type provides the conversations, permissions, connections, skills, and automations.

Security & Identity

What the AbuseIPDB connector can do

AbuseIPDB is a project dedicated to helping make the internet safer by providing a central repository for reporting and checking IP addresses associated with malicious activities.

One connection, many Spaces

Connect AbuseIPDB once, then decide which Spaces can use it in threads, skills, automations, and coding work.

Representative actions

  • Retrieve IP Blacklist

    Retrieves a list of the most reported malicious IP addresses from AbuseIPDB's database. Use this tool to build dynamic blocklists, threat intelligence feeds, or firewall rules. The blacklist is updated hourly and contains IPs with high abuse confidence scores. Free accounts receive up to 10,000 IPs. Paid subscriptions unlock filtering options (confidenceMinimum, country filters) and higher limits (up to 500,000 IPs).

  • Bulk Report

    Submit multiple IP abuse reports to AbuseIPDB in bulk via CSV upload. Use this when you need to report many malicious IPs at once instead of one-by-one. Returns the count of successfully saved reports and details about any invalid entries.

  • Check Block

    Tool to check the reputation of all IP addresses in a CIDR range. Use when you need aggregated abuse data for a network block.

  • Check IP Reputation

    Tool to check the reputation of an IP address. Use when you need to determine if an IP address has been reported for abusive activity within a specified look-back period. Example: CheckIp(ipAddress='8.8.8.8', maxAgeInDays=90).

  • Clear Address Reports

    Tool to remove all reports associated with a specific IP address. Use when you need to purge your own abuse records after verifying control of the IP.

Connection

API and auth details

AbuseIPDB exposes threat-intelligence APIs for checking IP reputation, checking CIDR blocks, reporting abusive IPs, retrieving blacklists, viewing usage limits, and integrating abuse reports or IP checks into firewalls, Fail2Ban, SIEM, and network-defense workflows.

FAQ

Questions people ask before connecting AbuseIPDB

Can Claude use AbuseIPDB?

Yes. Add a AbuseIPDB connection to a Space that runs Claude, then use its approved tools and data from any channel in that Space.

Can Codex work with AbuseIPDB through Type?

Yes. Add a AbuseIPDB connection to a Space that runs Codex, then use its approved tools and data from any channel in that Space.

Is this the same as a AbuseIPDB MCP server?

Not exactly. Type uses connectors and connections to give selected Spaces access to approved app tools and data. Some connectors use hosted MCP, while others use OAuth, API keys, service accounts, or custom APIs.

More security & identity connectors