Private DNS, done properly.
Encrypted resolver infrastructure for trusted circles. No public signups, no ad-tech, no behavioural profiling. Just DNS that behaves.
What you get
Encrypted by default
DNS over TLS and DNS over HTTPS reduce ISP inspection and captive portal trickery.
Integrity checks
DNSSEC validation helps prevent poisoning and spoofed answers.
Less noise
Network-level ad/telemetry blocking for calmer browsing and fewer trackers.
Threat model (the honest bit)
Protects against
- ISP DNS inspection and profiling
- Public Wi‑Fi hijacking and DNS tampering
- Transparent proxy injection attempts
- Carrier filtering via resolver manipulation
Does not protect against
- Malware already on your device
- Bad browser extensions
- Stolen credentials
- Human errors (tragically unlimited)
Access policy
This resolver is intentionally not a public product. Access is granted manually. If you're part of the trusted circle and need onboarding, use the main site contact route.
Request consideration