IP Intelligence Response Structure

This section constitutes of detailed insights on the IP address of the end user. Information in this section can be used to create or enrich workflows such as manual review, auto-rejection, etc.

IP Intelligence Fields

These fields contain information related to and derived from the IP address associated with the session.

Field NameDescriptionExample ValuesApplicable Product
timezoneThe timezone the session was originated from.A string, e.g.
America/Los_Angeles or null
Arkose Detect
Arkose Protect
user_ipThe IP address of the device used for the session.An IP address, e.g.
199.220.42.206, or null
Arkose Detect
Arkose Protect
is_torIndicates if the IP is suspected of being a TOR connection (either active or previously hosted TOR nodes and exist).true, falseArkose Detect
Arkose Protect
is_vpnIndicates if the IP is suspected of being a VPN connection. For example, it has been on a VPN and can include data center ranges.true, falseArkose Detect
Arkose Protect
is_proxyIndicates if this IP address suspected to be a proxy.true, falseArkose Detect
Arkose Protect
is_botWhether the session is bot-originated or not.true, falseArkose Detect
Arkose Protect
countryCountry the User IP belongs to.A string, e.g. US or null.Arkose Detect
Arkose Protect
regionState/Region that the IP belongs to.A string, e.g. California or null.Arkose Detect
Arkose Protect
cityThe city the IP belongs to.A string, e.g. Fremont or nullArkose Detect
Arkose Protect
ispThe Internet Service Provider name.A string, e.g. AT&T U-verse or nullArkose Detect
Arkose Protect
public_access_pointWhether the IP address belongs to education and research institutions, corporates, or public WiFi such as hotel lobby, coffee shop, etc.true, falseArkose Detect
Arkose Protect
connection_typeWhether the connection type belongs to one of the following categories: Residential, Corporate, Education, Mobile, Data CenterA string, e.g. Residential or nullArkose Detect
Arkose Protect
latitudeThe latitude coordinates of the device used for the session.e.g. 37.52809906 or nullArkose Detect
Arkose Protect
longitudeThe longitude coordinates of the device used for the session.e.g. -121.97319794 or nullArkose Detect
Arkose Protect