WireGuard on every device
Less code than OpenVPN, so less to go wrong. Proton, Mullvad and Cloudflare all run it.
WireGuard tunnels, servers in the EU, keys in the Apple Keychain, no logs kept.
Less code than OpenVPN, so less to go wrong. Proton, Mullvad and Cloudflare all run it.
We store no connection logs, no browsing data and no DNS queries. Our resolvers hold queries in memory and never write them out.
Private keys are generated on your device and live in the Apple Keychain. We never see them and could not recover them if asked.
Frankfurt and Amsterdam are our GDPR-jurisdiction exits. London, New York, Sydney and Bangalore exist for content access — pick your exit in the app.
The macOS app runs NetworkExtension under App Sandbox, notarized, distributed through the Mac App Store.
Buy once, use on iPhone, iPad and Mac. Subscriptions are our only revenue. There is no ad SDK in the apps.
We store your device's VPN key, how many devices are on the plan, and per-category blocked counts. We don't store browsing history, DNS queries or IP addresses. Category counts tell you a filter fired; they do not tell us, or you, which site it fired on.
Public key + IP assignment, for the tunnel to work.
How many trackers/ads/threats blocked per device — used in the dashboard.
No URL logs. No DNS query logs tied to identity.
Encrypted end to end. We couldn't read it if we tried.
Tell us before you tell anyone else. If you think you've found a vulnerability in the apps, the API or our infrastructure, report it and we'll work it through with you.
Want to dig deeper? Read our privacy policy.