> ## Documentation Index
> Fetch the complete documentation index at: https://documentation.idenfy.com/llms.txt
> Use this file to discover all available pages before exploring further.

# IP Check

> Assess IP address risk levels for VPN, proxy, and suspicious activity patterns during iDenfy identity and business verification flows.

### What Affects the IP Risk Level?

An IP address may receive a higher risk level if we detect patterns such as:

* Use of **VPNs, proxies, or anonymizing networks**
* Many different **emails** used from the same IP
* Many different **billing addresses** used from the same IP
* Many different **payment cards** used from the same IP
* A **high-risk device** previously seen using this IP
* A **high-risk email** previously associated with this IP
* Unusual or suspicious **network activity** detected across the iDenfy network

These patterns often indicate shared devices, automated traffic, or previous fraudulent activity.

***

## What the Risk Levels Mean

| **Risk Level**       | **What It Means**                                                             |
| -------------------- | ----------------------------------------------------------------------------- |
| **Very Low / Low**   | The IP looks normal; no notable concerns detected.                            |
| **Medium**           | Some unusual patterns were found; activity could be legitimate or suspicious. |
| **High / Very High** | Clear signs of risky or abnormal behavior associated with the IP.             |
