IPXA – a self-hosted IP reputation & GeoIP API that aggregates 15+ RBL feeds (no per-request fees, air-gap friendly)
Hey r/selfhosted, I've been working on IPXA , a self-hosted platform for IP reputation and network intelligence, and I wanted to share it here. The problem: Most IP reputation / GeoIP services are SaaS, charge per request, and require sending your traffic metadata to a third party. I wanted something I could run on my own infrastructure, query locally, and plug straight into my reverse proxy. What it does 🔎 Instant IP lookups : GeoIP, ASN and reputation data in one query 🚫 RBL orchestration : manages 15+ threat feed sources, with two feed types: reputation (for blocking) and bypass (for allowlisting). You can add your own feeds by pointing to a public URL with a CIDR or IP list 📊 Risk score per IP 🔌 REST API with three levels of detail: GET /api/ip/info/{address} : full GeoIP + ASN + reputation GET /api/ip/check/{address} : simplified reputation / risk response GET /api/ip/quick/{address} : quick check 🛑 Block at the edge : ready-made Lua hooks for OpenResty/Nginx (with local caching) and Apache, so you can reject bad IPs before they hit your apps Links Website: liberatti.github.io/ipxa GitHub: github.com/liberatti/ipxa It's still evolving, so I'd really like feedback: Which feeds would you want out of the box? Would you use it with Traefik/Caddy/Nginx Proxy Manager? (right now the hooks target OpenResty/Nginx and Apache) Anything missing for your setup? Thanks for reading, and happy to answer questions!