# ANY.RUN Integration

ANY.RUN is a Threat Intelligence (TI) integration. TI Data Source integrations are used during investigations to improve analysis and in interactive chat to help answer questions. They are optional, but enabling more tooling integrations enhances Dropzone analysis.

Dropzone interfaces with ANY.RUN to check the reputations of URLs, domains, or IP addresses that are involved in malicious activity such as spamming, hack attempts, and DDoS attacks.

## Create an API Key

ANY.RUN requires an API key to configure.

To obtain an API Key, do the following:

- Navigate to your [ANY.RUN](https://app.any.run/) account
- In the left sidebar, navigate to "Profile"

- Navigate to "API and Limits"

- Copy the API Key shown for use later in the Dropzone UI where it is called "API Key"

## Enable ANY.RUN

To enable the Data Source integration, do the following:

- Navigate to your Dropzone AI tenant home page, e.g. https://_mycompany_.dropzone.app
- In the bottom left-hand corner, click Settings > Integrations

- Click "Available"

- In the Search bar, search ANY.RUN, then click "Configure"

- Input the API key

- Click "Test & Save" to finish

If you have any errors, engage your Dropzone AI support representative.
