← ClaudeAtlas

ip-purity-checklisted

Reach for this to answer "can I trust this / will it get me blocked?" about a network identifier — the reputation, cleanliness, or risk behind it, not its plain facts. Triggers: (1) IP or range — clean/pure vs dirty/flagged/blacklisted? residential vs datacenter/VPN/proxy/Tor? safe to sign up, run Stripe/payments, stream, or log into ChatGPT/Claude without being risk-flagged (风控)? Includes 养号/marketing accounts, buying residential IPs, "why did this site block my IP," and checking your own exit IP. 这个IP干不干净/纯不纯, 检测IP纯净度, 查IP风险, 是不是机房/代理/VPN. (2) ASN/whole segment — is this network hosting/机房, what's its reputation. 查ASN/自治域信誉. (3) MAC address — which vendor made this NIC or device (OUI lookup). 查MAC厂商/网卡厂商. (4) Domain — WHOIS, age, reputation. 查域名/whois/域名年龄. Fire on any question judging whether one of these is clean, safe to use, trustworthy, or made-by-whom. Do NOT fire for plain geolocation, subnet/CIDR math, ping/port-scan scripts, firewall rules, packet analysis, or finding your own MAC.
darnelladsence/ip-purity-check · ★ 0 · AI & Automation · score 75
Install: claude install-skill darnelladsence/ip-purity-check
# IP Purity Check Judge how "clean" an IP address is and what it is safe to use for. **Purity is about who is behind the IP, not whether the IP is malicious right now.** A residential broadband IP with no abuse history is *clean*; a datacenter, VPN, proxy, or Tor exit is *impure* even when it has never attacked anyone, because it hides the real user and gets treated as high-risk by risk-control systems. Two numbers drive every verdict: - **clean_score** (0–100, higher = cleaner) — how residential / person-owned the IP looks. - **risk_score** (0–100, higher = worse) — how much active abuse / threat signal it carries. They are independent. A clean home IP can still be risky if it is on a spam blocklist; a datacenter IP can be low-risk yet still impure. Always report both. ## The toolset IP purity is the core, but the same data foundation answers four entity types. The three companions exist because a good purity verdict often needs the context around the IP: | Ask about… | Lookup | Adds | |------------|--------|------| | an **IP** | purity verdict | the core clean/risk assessment | | an **ASN** | network reputation (`isp_type`, `reputation_tier`, `ioc_density`) | *what network is this IP in?* — a hosting/high-IOC ASN drags purity down | | a **MAC** | OUI vendor (device maker, IEEE registry) | *what device is this?* — identifies the NIC vendor; flags randomized/private MACs | | a **domain** | WHOIS + age + reputation | *is a hosted domain trustworthy?* — young, low-rep