Visitor risk detection for your website
One JavaScript snippet detects VPNs, proxies, Tor, hosting networks, and malicious IPs on every visit — with a risk score and recommendation for each session, and a dashboard to review it all.
Quickstart
Install in under two minutes
The script tag (auto-updating or pinned + SRI), what happens automatically, and how to verify the install.
JavaScript SDK
Full API reference
FindIP.init, track, getSession, setConsent, and every configuration option.
Events
Standard events & payloads
The event catalog, auto-detection confidence, and the full payload schema.
Google Tag Manager
Template & dataLayer
The official tag template, Custom HTML alternative, risk results in the dataLayer, and consent wiring.
Privacy Modes
strict / balanced / advanced
What each mode collects, consent integration, and what is never collected in any mode.
Data Collection
Exactly what is sent
Field-level breakdown per privacy mode, form metadata examples, and allowlisted customer context.
Cookies
First-party only
_fip_sid and _fip_vid: purpose, duration, fallbacks when cookies are blocked.
Server Verification
Enforce on the backend
Why browser signals aren't enough for enforcement, and how to verify session risk securely from your backend.
Threat Network
The free-preview data contribution
Exactly what pseudonymized, infrastructure-level sightings free sites contribute — and everything they never contain.
Free Preview Terms
AS IS · your responsibility
Preview status, fair use, the Threat Network contribution, and the full allocation of compliance responsibility.