Verify this browser
Run a one-use authoritative check that proves whether this browser's test query reached ScotNet DNS.
ScotNet Secure DNS
Encrypted DNS for approved users, with DNSSEC validation and network-level filtering. It protects DNS transport; it is not a VPN and does not hide the rest of your traffic.
Start here
Run a one-use authoritative check that proves whether this browser's test query reached ScotNet DNS.
Use platform-specific instructions, endpoint checks and rollback steps.
Read the transport, access, logging, retention, filtering and availability disclosures.
Prepare a structured report for a false positive, outage, certificate issue or setup failure.
What it does
DoT and DoH encrypt DNS traffic between your device and ScotNet DNS, reducing plain-text observation on local and access networks.
DNSSEC validation checks signed DNS data. A failed validation is returned as a lookup failure rather than a trusted answer.
Known advertising, telemetry and abusive domains may be blocked before a connection is made. False positives remain possible.
Threat model
Published facts
/dns-query and approved ClientID paths.853.Privacy and operations
The website runs no advertising or third-party analytics. ScotNet avoids behavioural profiling and does not sell resolver data. Short-lived operational and security records may exist for diagnosis, abuse mitigation and reliability. ScotNet’s general policy says typical retention does not exceed 30 days unless an active investigation or legal obligation requires a temporary extension.
Filtering review
Report the domain, approximate time, device, transport and observed response. Reports are reviewed; they never trigger an automatic allow-list change.