IPDebrief

216.73.216.163

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 216.73.216.163/32

Classification: Low Risk / Infrastructure IP

Date: 2026-07-30

Status: Active Monitoring

---

## EXECUTIVE SUMMARY

The IP address 216.73.216.163 is a low-risk infrastructure address associated with Anthropic, PBC operating via AWS Cloud. No active malicious activity detected. IP classified as firewalled with no open services. Subnet shows minimal abuse density (5.56%). Recommend routine monitoring only.

---

## OWNERSHIP & GEOLLOCATION

FieldValue
**Organization**Anthropic, PBC
**ASN**16509 (AWS-ANTHROPIC)
**CIDR Block**216.73.216.0/22
**Country/Region**US / Ohio
**City**Columbus
**RIR**ARIN
**Network Type**AWS Cloud Infrastructure

---

## RISK PROFILE

MetricScoreAssessment
**Overall Risk**25Low Risk
**Abuse Confidence**N/ANo confirmed abuse
**Threat Indicators**0None detected
**Blacklist Status**0/8Not blacklisted
**Tor Exit Node**FalseN/A
**Known Attacker**FalseN/A
**Spam Source**FalseN/A

---

## NETWORK SERVICES & FINGERPRINT

---

## CONTROL PLANE ANALYSIS

---

## NEIGHBORHOOD ANALYSIS (216.73.216.0/24)

Notable Neighbors:

---

## OBSERVATION HISTORY

Observation Count: 20 signals

Latest Observation: 2026-07-30 09:53 UTC

Threat Persistence: 0 days

Ownership Changes: 0

Recent signals indicate:

---

## RECOMMENDED ACTIONS

Current Status: Low Threat Profile

Recommended Actions:

1. Monitor: Continue routine monitoring for any behavioral changes

2. Alert Threshold: Flag risk score changes exceeding +50 points

3. Correlation: Monitor 216.73.216.123 for associated activity

4. Rule Suggestion: No blocking required; allow-list for legitimate AWS traffic

Firewall Rule: None required (infrastructure IP, no attack vectors)

---

## INTELLIGENCE NOTES

This IP address represents legitimate cloud infrastructure for Anthropic's AWS deployment. The low risk score and absence of threat indicators support continued operations without intervention. Subnet context suggests minimal abuse risk, though one sibling IP (216.73.216.123) warrants monitoring for coordinated activity.

---

Report Generated: IPDebrief Intelligence Platform

Classification: Defensive Security Intelligence

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOhio
CityColumbus
Timezoneβ€”
Latitude39.96
Longitude-83.00

🏒 Ownership & Registration

OrganizationAnthropic, PBC
ASNAS16509
Network NameAWS-ANTHROPIC
CIDR Block216.73.216.0/22
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
25%
12
reputation
0%
00
geolocation
25%
11
Overall20%56
Coverage: 5/6 dimensions Β· Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (65%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-26 21:28:15 UTC
Last Seen2026-07-30 09:42:37 UTC
Profile Built2026-07-30 09:59:24 UTC
Data FreshnessLive
Signal Types22
Total Observations23
πŸ” 22 signal types Β· 23 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.