← All integrations

AbuseIPDB

6 operations0 webhooks

IP address reputation database for detecting and reporting malicious network activity.

Supported operations

  • ClearDestructive

    Remove all reports for an IP address from your account and return the number deleted

FAQ

Install corsair and @corsair-dev/abuseipdb, add the AbuseIPDB plugin, and connect with an API key. Then call methods like corsair.abuseipdb.api.address.clear() from your app. Corsair syncs data per tenant.

Yes. AbuseIPDB requires an API key from your AbuseIPDB account or developer dashboard. Create credentials with access that matches what you automate, then paste them into Corsair or connect through managed auth in Hub.

Yes. One Corsair client can hit AbuseIPDB, GitHub, Notion, Stripe, and the rest. Trigger AbuseIPDB from a webhook, push updates to Slack, or chain actions across plugins. Same tenant context across integrations, plain TypeScript.

Teams use Corsair for ip address reputation database for detecting and reporting malicious network activity. Common builds include sync jobs, admin tooling, and agents that call AbuseIPDB APIs from your backend. Local DB entities let you query synced AbuseIPDB records without hitting the API on every read.

The SDK is open source. Self-host and you pay Corsair nothing for the integration layer. Hub bills for hosted auth and execution, not per AbuseIPDB API call. Hub has a generous free tier. For hobby projects you can probably run the whole thing on free. Paid plans start to matter with more tenants or heavier traffic.

We maintain @corsair-dev/abuseipdb in the open repo. When AbuseIPDB ships API changes, upgrade the package. Your call sites stay typed. You should not need to rewrite the integration layer each time.

No. Corsair does not read your AbuseIPDB data or hold individual access credentials. Credentials stay in your database. API calls run on your instance. We do not store AbuseIPDB data on your behalf.