IPAbuse Developers
Beginner8 min

Reporting Abusive IPs

Submitting reports helps build the shared blocklist and earns you credits. This tutorial covers authentication, choosing a category, and reading the confirmation response.

1

Authenticate with a JWT

Reporting requires a user JWT — not just an API key — so the report is attributed to your account. Obtain a token by posting your credentials to the login endpoint.

cURL
curl -X POST https://api.ipabuse.org/v1/auth/login \
  -H "Content-Type: application/json" \
  -d '{"email":"you@example.com","password":"••••••"}'
2

Choose an abuse category

The category field accepts one of the supported enum values. Common values are SPAM, BRUTE_FORCE, PORT_SCAN, PHISHING, MALWARE, DDOS, SQL_INJECTION, and EXPLOIT.

3

Submit the report

POST the report with the IP address, category, a short description, and a severity score from 1 (low) to 5 (critical).

cURL
curl -X POST https://api.ipabuse.org/v1/ip/report \
  -H "Authorization: Bearer YOUR_JWT" \
  -H "Content-Type: application/json" \
  -d '{
    "ipAddress": "1.2.3.4",
    "category": "SPAM",
    "description": "Sending spam emails from this IP",
    "severity": 3
  }'
4

Check your credit balance

Each accepted report earns credits. Verify they were applied.

cURL
curl https://api.ipabuse.org/v1/credits/balance \
  -H "Authorization: Bearer YOUR_JWT"