{"uid":"cap_jUwHxc8Sk4sQvpGNm23Y8","slug":"cdn-ip-check-bulk-2d329b2a","name":"cdn-ip-check-bulk","description":"Bulk cdn ip check: up to 20 ips in one call, processed concurrently, results returned in input order with a per-item error field and a count of failures. Same answer per item as the single /ip/is-cdn endpoint (Is this IP a CDN or reverse proxy? Detects Cloudflare, Akamai, Fastly, CloudFront, Imperva/Incapsula, Sucuri, StackPath, Bunny, KeyCDN, Gcor). Batch enrichment for agents that hold a list. $0.01 per batch.","url":"https://intel.rallylive.ca/bulk/ip/is-cdn","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","properties":{}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.1","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.1/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_wVf4XrAA3jPJ2_eBvbwKo","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.1","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Batch-checks up to 20 IP addresses at once to determine if each is a CDN or reverse proxy (Cloudflare, Akamai, Fastly, CloudFront, etc.), returning results in input order with per-item errors and a failure count.","exampleAgentPrompt":"I have this list of IPs from our access logs — can you check all of them at once to tell me which ones are CDN or reverse proxy addresses like Cloudflare, Akamai, or Fastly?","exampleUseCases":[{"title":"Filter CDN IPs from access logs","prompt":"I pulled 15 unique IPs from today's server logs. Can you check all of them at once and tell me which ones are CDN or reverse proxy addresses so I know which hits came from real origin traffic?"},{"title":"Security triage for suspicious IPs","prompt":"We flagged these 18 IPs during an incident review — can you batch-check them all and tell me which are Cloudflare, Akamai, or other CDN nodes versus actual client IPs?"},{"title":"Enrich IP list for infrastructure audit","prompt":"I'm auditing our infrastructure and have a list of 20 IP addresses I need to categorize — please check them all in one go and flag which ones are CDN or reverse proxy endpoints."}],"resultDescription":"Returns an ordered array of per-IP results matching the input order. Each item includes whether the IP is a CDN/reverse proxy, the detected provider name (e.g. Cloudflare, Akamai, Fastly, CloudFront, Imperva/Incapsula, Sucuri, StackPath, Bunny, KeyCDN, GCore), a per-item error field if the lookup failed, and an overall count of failed items in the batch.","failureModes":["More than 20 IPs submitted — batch size exceeded","Invalid IP format in input list — per-item error returned for that entry","Network timeout on concurrent lookups — per-item error field populated","Malformed request body — HTTP 400 returned","Payment not attached or insufficient — HTTP 402 returned"],"whenToPreferThis":"Choose this endpoint when you have a list of 2–20 IP addresses to classify at once rather than calling the single-IP endpoint repeatedly. It processes all IPs concurrently and returns results in input order, making it far more efficient for log enrichment, security triage, or infrastructure audits. Prefer this over the single /ip/is-cdn endpoint whenever batch throughput matters and you want a unified failure count across the set.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T07:21:57.577Z","isFirstParty":false}