DNS & Infrastructure · DomScan product

IP Geolocation API

Get geolocation data for an IP address including country, city, and ISP.

What you get

Get geolocation data for an IP address including country, city, and ISP.

SynchronousRESTMCPSDKInteractive tool

Choose this product when

Who it is for

Use the suite for troubleshooting, migration checks, infrastructure research, and security review.

Choose this product when

Choose this to add network, location, and ownership context to an IP address where public evidence is available.

What you get

Get geolocation data for an IP address including country, city, and ISP.

Endpoints

Review the supported operations, inputs, outputs, execution modes, and response limits before integrating.

GET /v1/ip View API reference

Credits and authentication

1 Authentication required. Check the operation reference for the exact cost and any per-item pricing.

Example operation

Use documented operations to collect, assess, enrich, verify, compare, protect, or monitor public evidence.

GET /v1/ip

Query Parameters

Parameter Type required
ip string optional
domain string optional

Response Fields

Field Type
ip string
domain string | null
geolocation object
geolocation.country string | null
geolocation.country_name string | null
geolocation.region string | null
geolocation.region_name string | null
geolocation.city string | null
geolocation.postal string | null
geolocation.latitude number | null
geolocation.longitude number | null
geolocation.timezone string | null
geolocation.precision string
network object
network.asn integer | null
network.asn_name string | null
network.asn_org string | null
network.isp string | null
network.connection_type string | null
security object
security.is_proxy boolean
security.is_vpn boolean
security.is_tor boolean
security.is_tor_exit boolean
security.is_datacenter boolean
security.is_cloud boolean
security.cloud_provider string | null
security.threat_score integer
security.is_vpn_suspected boolean
security.vpn_suspected_provider string | null
security.type_classification object
security.type_classification.type string
security.type_classification.confidence string
security.fcrdns object
security.fcrdns.ptr string | null
security.fcrdns.fcrdns_valid boolean | null
intelligence_summary object
intelligence_summary.query_type string
intelligence_summary.domain_resolved boolean
intelligence_summary.cache_status string
intelligence_summary.data_source string
intelligence_summary.confidence string
intelligence_summary.confidence_score integer
intelligence_summary.asn_present boolean
intelligence_summary.organization_present boolean
intelligence_summary.country_present boolean
intelligence_summary.security_signal_count integer
intelligence_summary.risk_flags[] string[]
intelligence_summary.hosting_category string
meta object
meta.query_time_ms integer
meta.cached boolean
meta.source string
meta.data_updated_at string | null
meta.attribution object
meta.attribution.name string
meta.attribution.url string
meta.attribution.license string
meta.attribution.license_url string
meta.attribution.modified boolean
meta.warning_code string | null

Example Request

curl -H "X-API-Key: $DOMSCAN_API_KEY" "https://domscan.net/v1/ip?ip=8.8.8.8&domain=status.openai.com"

Example Response

{
  "ip": "8.8.8.8",
  "domain": null,
  "geolocation": {
    "country": "US",
    "country_name": "United States",
    "region": null,
    "region_name": "California",
    "city": "Mountain View",
    "postal": null,
    "latitude": 37.422,
    "longitude": -122.085,
    "timezone": null,
    "precision": "city"
  },
  "network": {
    "asn": 15169,
    "asn_name": "AS15169",
    "asn_org": "Google LLC",
    "isp": null,
    "connection_type": "hosting"
  },
  "security": {
    "is_proxy": false,
    "is_vpn": false,
    "is_tor": false,
    "is_tor_exit": false,
    "is_datacenter": true,
    "is_cloud": true,
    "cloud_provider": "Google Cloud",
    "threat_score": 0,
    "type_classification": {
      "type": "datacenter",
      "confidence": "high"
    },
    "fcrdns": {
      "ptr": "dns.google",
      "fcrdns_valid": true
    }
  },
  "intelligence_summary": {
    "query_type": "ip",
    "domain_resolved": false,
    "cache_status": "miss",
    "data_source": "db-ip-lite+enrichment",
    "confidence": "high",
    "confidence_score": 100,
    "asn_present": true,
    "organization_present": true,
    "country_present": true,
    "security_signal_count": 2,
    "risk_flags": [
      "cloud",
      "datacenter"
    ],
    "hosting_category": "cloud"
  },
  "meta": {
    "query_time_ms": 118,
    "cached": false,
    "source": "db-ip-lite+enrichment",
    "data_updated_at": "2026-08-01T01:42:04.000Z",
    "attribution": {
      "name": "DB-IP Lite",
      "url": "https://db-ip.com",
      "license": "CC BY 4.0",
      "license_url": "https://creativecommons.org/licenses/by/4.0/",
      "modified": true
    }
  }
}

Limits and evidence boundaries

Results describe observed public evidence and its provenance.
Confidence describes evidence strength for the reported observation, not certainty about the real-world entity.
Evidence can change over time; use timestamps and freshness fields when provided.

Reviewed 2026-08-22

Frequently asked questions

Where can I find the IP Geolocation request and response reference?

Use the API reference for IP Geolocation to review parameters, response fields, examples, status codes, and supported operation modes.

How should I interpret unknown or incomplete results from IP Geolocation?

Unknown or partial results mean that the requested evidence could not be fully determined. Keep the result state, confidence, freshness, and limitations in downstream decisions.

How is IP Geolocation priced?

Pricing depends on the operation and execution mode. Check the endpoint reference for the current credit cost, authentication requirement, and per-item rules.

Used by people at amazing companies

InstantOutseerMongoDBRespondentSage Expense ManagementInstantlyD.R. HortonWhatConvertsAdobeMotionElementsLLM Pulse