IP Intelligence Briefing: 138.197.144.63/32
Classification: Low Risk | Risk Score: 25 | Data Freshness: June 15, 2026
---
**Ownership & Infrastructure**
The IP address is owned and operated by DigitalOcean, LLC (ASN 14061), a cloud infrastructure provider. The address belongs to the 138.197.144.0/20 BGP prefix under DigitalOcean's routing. Geolocation data places the infrastructure in Toronto, Ontario, Canada with 4,500 km accuracy radius. The network is classified as cloud compute infrastructure with no CDN, VPN, proxy, or hosting services detected.
**Network Services & Exposure**
No active services were identified:
- Open Ports: None detected
- TLS/HTTP Services: No certificates, titles, or banners observed
- DNS Resolution: No PTR hostnames, no forward resolution, 0 hosted domains
- Email Authentication: No SPF or DMARC records configured
**Threat Indicators & Reputation**
- Threat Classification: None detected
- Blacklist Status: 0 blacklist entries
- Known Campaigns: No associations with active threat campaigns
- Abuse Confidence Score: Not applicable (low risk profile)
- Indicators: No Tor exit node, known attacker, or spam source flags
**Neighborhood Analysis**
The /24 subnet (138.197.144.63/24) shows:
- Abuse Density: 0%
- Classification: Clean
- Inherited Risk: 0
- Active Siblings: 1 (the target IP)
- Threat Siblings: 0
No elevated risk signals from neighboring IP addresses.
**Observation History**
Eighteen signals recorded, with recent activity from June 15, 2026:
- June 15: Multiple listings detected (8 total, 1 with high severity rating)
- June 9: Historical intelligence briefing generated with risk score 25 (Low Risk)
- Temporal Analysis: No persistent malicious behavior observed. Ownership changes: 0. Threat observation count: 0.
**Relationship Graph**
All 18 identified relationships map to the same network block (DIGITALOCEAN-138-197-0-0), confirming the IP's association with DigitalOcean's infrastructure without cross-organizational or cross-subnet connections.
---
**Recommendations & Actions**
- Risk Level: Low (Score: 25/100)
- Firewall Actions: No immediate blocking required. Traffic may be permitted with standard logging.
- Monitoring: No additional monitoring thresholds recommended.
- Classification: Standard cloud infrastructure traffic.
Summary: IP 138.197.144.63 presents a low-risk profile typical of legitimate cloud infrastructure. No active threat indicators, no blacklist associations, and a clean neighborhood context. Standard network operations policies apply.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 18% | 1 | 2 |
| geolocation | 25% | 2 | 2 |
| Overall | 18% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 20:59:02 UTC |
| Last Seen | 2026-06-28 14:57:25 UTC |
| Profile Built | 2026-06-29 03:01:20 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.