The Spamhaus Project is an international organisation based in the Principality of Andorra, founded in 1998 by Steve Linford to track email spammers and spam-related activity.

Commercial BGP (Border Gateway Protocol) feed service delivering Spamhaus IP reputation data (BCL and DROP datasets) as BGP communities for use with routers and firewalls at the network edge. Enables automatic blocking of botnet command-and-control (C&C) traffic and other malicious IP ranges. Distributed via Spamhaus Technology.

Commercial-tier annual subscription to Spamhaus DNS Response Policy Zones (RPZs) for enterprise DNS Firewall protection. Provides DNS-level automatic protection against users resolving to phishing websites, malware dropper sites, botnet C&C domains, and other malicious destinations. Distributed via Spamhaus Technology with enterprise-grade delivery and technical support.

Free-tier access to Spamhaus DNS Response Policy Zones (RPZs) for use as a DNS Firewall. Provides four RPZ zones at no cost via Spamhaus Technology, subject to terms of use. Enables DNS-level blocking of malicious domains including phishing sites, malware droppers, and botnet C&C domains.

Commercial annual subscription to the Spamhaus Intelligence API scoped to domain data only. Sold as 'SIA Queries for Domain data only' on order forms. Provides domain reputation query access with a specified daily query allowance and queries-per-second rate limit. Observed at $49,900/year for 5 million queries/day at 200 QPS (OEM/white-label arrangement). Distributed via Spamhaus Technology.

Commercial Enterprise-tier annual subscription to the Spamhaus Intelligence API providing IP Reputation Data Feeds. Sold as 'Spamhaus Data Feed Services' on order forms. Includes access to IP reputation data feeds via the Enterprise API with a specified monthly call allowance, plus optional Download Feature Access for bulk data download. Distributed via Spamhaus Technology. Observed at $105,000/year for 50,000 calls/month with download access.

Free Developer License for the Spamhaus Intelligence API, providing access to IP and domain reputation data for development and small-scale use. Includes signal and intelligence relating to IPs and domains for threat detection, investigation, vetting, and validation. Distributed via Spamhaus Technology subject to terms of use.

Free dataset listing single IPv4 addresses actively used by cybercriminals to control malware-infected computers (bots). An advisory 'drop all traffic' list with extremely rare false positives. Contains 500-2000 listings with up to 50 new entries per day. Available as plain text file, via DNS lookups, as CSV, as RPZ, and via BGP Feed (commercial).

Free advisory 'drop all traffic' dataset listing IP ranges leased or stolen by professional spam or cybercrime operations. Includes DROP (IPv4), DROPv6 (IPv6), and ASN-DROP (autonomous system numbers). Available in JSON format at no cost for any use, including commercial. A subset of the SBL designed for use by firewalls and routing equipment. Re-evaluated daily.

Commercial Passive DNS service providing cache miss data with insight into current and historical connections across the internet. Enables pivoting from IPs to domains and vice versa to investigate how specific internet identifiers are related. Target customers include threat hunters, penetration testers, security researchers, and brand protection teams. Distributed via Spamhaus Technology.

Commercial-tier annual subscription to Spamhaus DNS Blocklists via the Data Query Service (DQS), distributed through Spamhaus Technology. Required for ISPs, enterprises, corporations, and commercial spam filter companies with high email traffic or commercial use. Provides access to an expanded set of datasets beyond the free tier, plus technical support.

Free-tier access to Spamhaus DNS Blocklists via the Data Query Service (DQS), provided through Spamhaus Technology. Available to low-volume, non-commercial users subject to terms of use. Includes access to core blocklists (SBL, CSS, XBL, PBL, ZEN, DBL).