Expanding IP and Service Rows in the Explorer
Click any IP or service row in the Monocle Explorer's breakdown tables to expand an inline detail panel, without leaving the table.
Difficulty
Beginner
No prior Spur experience needed
Time estimate
1 minute
Typical time to complete
Prerequisites
- A plan with the search entitlement — customers without it see an unavailable state instead of the panel
What you'll achieve
- Expand an IP row to see its observed state at a glance
- Expand a service row to see its service profile
Steps
- 1
Expand a row
In a Monocle Explorer breakdown table, click any IP or service row to expand it. The detail panel loads inline, just for that row, so you don't need to leave the table to look something up.
- 2
Read the IP panel
Expanding an IP row shows its Observed State: classification, service label, infrastructure, exit location, ASN, and risk indicators.
- 3
Read the service panel
Expanding a service row shows its service profile: Active IPs, Distinct Countries, Top Country, Category, Infrastructure Volatility, Net IP Growth, Average Daily Churn, TTL, and a description.
Related FAQs & guides
Do you have a confidence score or last seen date?
Spur operates on a "high confidence" only model to reduce the likelihood of false positives ever making it into our data. Our mentality is that our customers should trust us to decide if something is true rather than providing an arbitrary score to constantly adjust higher or lower. Every API request or Monocle session provides the latest true information for that moment in time. On-prem solutions are updated at their purchased cadence (daily or real-time). We actively purge any result that is no longer true and maintain smart age-offs to maintain the most accurate snapshot of data each day.
How can I download data on all IPv4 and IPv6 addresses?
IP location, routing, and ownership information is produced at the network level and presented into netblocks. Other data such as client fields or service attributions are produced on an individual IP address basis. For our API customer this coverage is automatically merged to produce full IPv4 and IPv6 coverage. For on-prem services, a combination of these two granularities must be used to cover all IP space.
Does Spur support IPv6?
Yes. Spur supports IPv6 intelligence and continues to expand visibility and classification capabilities as IPv6 adoption grows.
If Spur identifies a provider such as NetNut, does that mean the traffic originated directly from that provider's customer?
Not necessarily. Proxy ecosystems often involve resellers, downstream providers, SDK operators, and shared infrastructure. A provider label identifies infrastructure associated with the traffic but should not be treated as attribution of a specific end user without additional evidence and investigation.
Which delivery option is best for my organization?
The best option depends on:
Does Spur offer downloadable feeds, local deployments, or MMDB-style delivery?
Available delivery methods may vary by product and customer requirements. Organizations with low-latency or high-volume enrichment needs should contact Spur to discuss available deployment and data-delivery options.