Deploy a 120M-domain intelligence database inside air-gapped and classified networks. Perpetual licensing with no internet dependency. 58 web-filtering categories enforced at the gateway level, 17M company-linked domains for threat attribution, and full FOIA-ready anonymization built into the stack.
Air-gapped deployment ready
Perpetual-license offline database covering 120M domains with dual-taxonomy classification. Deploy inside classified networks, SCIF environments and sovereign infrastructure without external connectivity.
Explore databaseClassified environments cannot call external APIs. FOIA requests demand automated redaction at scale. Shadow AI adoption in agencies creates data-loss vectors. Autonomous agents browsing .gov infrastructure need enforceable guardrails. Each of these requirements demands purpose-built infrastructure.
Classified and sensitive government networks operate without internet access by design. Cloud-based threat intelligence and content-filtering APIs are architecturally incompatible with these environments. The URL Categorization Database ships as a perpetual-license downloadable file in CSV, JSON or SQLite format, deployable inside SCIF environments, sovereign data centers and isolated OT networks without any external connectivity requirement.
Freedom of Information Act requests require agencies to review thousands of documents for personally identifiable information before public release. Manual redaction is slow, inconsistent and risks exposing protected data. Staff attorneys spend weeks on what automated PII detection handles in hours. The Anonymization API detects 70+ PII types across text, PDF, DOCX and image formats with 99.9% accuracy, providing first-pass redaction that legal teams review and approve.
Government employees use AI writing assistants, code generators and research tools without IT approval, creating unmonitored data-loss vectors. Sensitive policy documents, internal communications and pre-decisional materials enter commercial AI systems without audit trails. The AI Tools Blocklist classifies 20,361+ AI-tool domains across 18 categories, enabling agencies to enforce granular allow/block policies at the network gateway level with daily-updated feed files.
Government agencies deploying AI agents for procurement research, vendor evaluation and compliance monitoring need enforceable controls over where those agents navigate. Without page-type classification, an agent performing vendor research could reach login pages, checkout flows or credential-harvesting sites. The AI Agent Allowlist maps 28 page types across 40M+ domains, enabling policy engines to restrict agent navigation to approved page types on approved hosts.
The web-filtering taxonomy classifies domains into categories designed for block/allow decisions rather than advertising context. Each category maps directly to government acceptable-use policies, CISA binding operational directives, NIST cybersecurity framework controls, MITRE ATT&CK techniques and agency-level network security requirements.
Federal agencies, state and local governments, and defense organizations each operate under different compliance frameworks, network architectures and procurement constraints. The same underlying database and classification engine adapts to each deployment model, from cloud-connected civilian networks to fully isolated classified enclaves.
Map the 58 web-filtering categories to CISA Binding Operational Directives. Automate compliance reporting by logging every block and allow decision against the directive that mandates it. The database provides the classification layer that CDM dashboards and EINSTEIN sensors cannot generate independently.
The offline database deployment model avoids cloud authorization requirements entirely. No data leaves the agency network. For hybrid deployments, the real-time API operates from infrastructure that supports standard federal procurement vehicles. Classification data stays within the agency boundary at all times.
Federal civilian agencies enforce acceptable-use policies across hundreds of thousands of endpoints. The 120M-domain database provides instant local lookup for web gateways, DNS resolvers and next-generation firewalls. Seven-day refresh cycles delivered as differential updates keep the offline corpus current without full re-downloads.
K-12 networks must comply with the Children's Internet Protection Act. The AI Tools Blocklist adds a dedicated AI-tool filtering layer on top of standard web filtering, blocking essay writers, paraphrasing tools and AI tutoring platforms that threaten academic integrity. EDL and RPZ formats integrate directly with Palo Alto, Fortinet and BIND DNS infrastructure already deployed in most districts.
City and county governments operate networks serving police departments, courts, public works and administrative offices. The URL Database provides content filtering and threat intelligence in a single offline file. Municipal IT teams deploy it without cloud dependencies, SaaS contracts or per-seat licensing models that strain limited budgets.
Public libraries balance open access with legal obligations under CIPA. The web-filtering taxonomy distinguishes between categories that must be blocked on children's terminals and categories that remain accessible on adult terminals. Granular category-level policy enforcement replaces the blunt on/off filtering that triggers patron complaints.
SIPRNet, JWICS and other classified enclaves require all data sources to be physically imported and validated before deployment. The URL Categorization Database ships as a standalone file with no external dependencies, no phone-home telemetry and no license-server requirement. Perpetual licensing means the database continues to function even if the vendor relationship ends.
Defense contractors and cleared facilities handling International Traffic in Arms Regulations data need domain intelligence that does not transit foreign infrastructure. The offline database can be validated, signed and deployed within ITAR-compliant workflows. No classification queries leave the facility. No API calls cross national boundaries.
The database's malware, phishing, command-and-control and spyware categories function as a threat intelligence layer for defense networks. Integrate the offline feed into SIEM platforms, DNS sinkholes and network monitoring tools. Each domain carries a web-filtering classification that maps to MITRE ATT&CK techniques and CISA alert categories.
Each capability addresses a specific requirement that commercial web-filtering products do not solve. From air-gapped database deployments for classified enclaves to automated FOIA redaction and shadow AI governance, these tools integrate into existing government network infrastructure, security stacks and compliance workflows without requiring architectural changes or new vendor dependencies.
The 120M-domain database ships as CSV, JSON or SQLite with a perpetual license. No internet connection, license server or API endpoint required. Deploy inside SCIF environments, sovereign data centers and classified enclaves. Seven-day differential updates delivered as secure file transfers when connectivity is available.
URL DatabaseAutomated first-pass redaction of personally identifiable information across text, PDF, DOCX, images and scanned documents. The Anonymization API detects 70+ PII types including names, Social Security numbers, addresses, phone numbers and financial account identifiers. Legal reviewers approve the automated redactions instead of performing them manually.
Anonymization API20,361+ AI-tool domains classified into 18 categories with daily updates. Four risk flags per domain: trains on user data, data sovereignty concerns, NSFW or adult AI content, and deepfake or abusive content generation. Delivered as EDL for Palo Alto and Fortinet firewalls, DNS RPZ for BIND, PAC files for group policy deployment and REST API for programmatic access.
AI Tools BlocklistControl where autonomous AI agents navigate across 40M+ domains. 28 page types per domain: login, signup, checkout, documentation, pricing, contact, careers and more. Four-layer policy enforcement from host lists through egress rules to default-deny posture. Prevent agents from reaching credential pages, making purchases or accessing restricted content.
AI Agent AllowlistThe web-filtering taxonomy identifies malware distribution sites, phishing pages, command-and-control infrastructure, spyware delivery domains and exploit kit landing pages. Each classification integrates with SIEM platforms as a threat intelligence feed. Coverage extends across 120M domains with seven-day refresh cycles catching newly registered malicious infrastructure.
Every domain carries both IAB Content Taxonomy classification (700+ advertising and content categories) and web-filtering classification (58 security and policy categories). The IAB taxonomy powers content intelligence and audience analysis. The web-filtering taxonomy drives block/allow decisions. Both are available simultaneously in the offline database and the real-time API.
Classification APIFrom network perimeter defense to public records compliance, the same classification infrastructure serves different government missions depending on the deployment model, compliance framework and operational security requirements of each agency or command.
Deploy the 120M-domain database as the classification layer behind web gateways, DNS resolvers and next-generation firewalls. 58 web-filtering categories map directly to government acceptable-use policies. Local lookup eliminates API latency and external data dependencies for classified and sensitive networks. Policy enforcement at line speed across all endpoints without any query leaving the network perimeter.
Process Freedom of Information Act requests at scale with automated PII detection and redaction. The Anonymization API handles text documents, PDFs, scanned images and spreadsheets in a single workflow. Staff attorneys review automated redactions instead of performing manual page-by-page review, reducing processing time from weeks to days while improving consistency across large document sets.
Feed domain classification data into SIEM platforms, security orchestration tools and network monitoring systems. Malware, phishing, command-and-control and spyware categories provide a continuously updated threat intelligence layer that enriches existing indicator-of-compromise databases. The offline format integrates with air-gapped security operations centers that cannot query external threat feeds in real time, enabling proactive threat detection and incident response across isolated environments.
Enforce acceptable-use policies across government workstations, VDI instances and mobile devices issued to federal and state employees. Social media monitoring during work hours, bandwidth limits on streaming services, blocks on gambling and adult content, and logging of cryptocurrency site access. Category-level granularity replaces blanket internet restrictions that reduce productivity and drive employees to personal devices and unauthorized VPN circumvention tools.
Deploy domain intelligence inside SIPRNet, JWICS and other classified enclaves where no external data source can be queried in real time. The perpetual-license database operates independently of vendor infrastructure without license-server callbacks or cloud-based validation. Differential updates are imported through standard cross-domain solutions and data diode architectures when available. No telemetry, no license validation calls, no external dependencies of any kind.
Anonymize public records, court filings, police reports, government correspondence and investigative files before publication, archival or inter-agency sharing. The Anonymization API detects names, Social Security numbers, dates of birth, financial accounts, medical record numbers and dozens of additional PII types across text, PDF, DOCX and scanned image formats. Format-preserving pseudonymization maintains document readability and cross-reference integrity while replacing every protected identifier with a consistent pseudonym.
19 years of continuous operation serving government organizations worldwide. Deployed across federal civilian agencies, state and local governments, defense contractors, intelligence community partners and allied nation networks.
The URL Categorization Database provides the offline classification layer for air-gapped and classified networks. Companion platforms add real-time domain classification, AI-tool governance for shadow AI prevention, agent navigation guardrails for autonomous systems, and automated data anonymization for FOIA and records management workflows.
We will prepare a sample database file with 1,000 government-relevant domains classified across all 58 web-filtering categories. Test the data against your existing gateway infrastructure, validate category accuracy against your acceptable-use policy, and evaluate the integration path before committing to a full deployment.