IP Browser Tools

SECURITY TOOL

DNS Leak Test

A DNS leak exposes your browsing history to your ISP even when using a VPN. Run the test below to check your status.

TEST STATUS

Running test…

Checking WebRTC, DNS, and IP status.

WEBRTC IP LEAK TEST

Public IP (HTTP) Detecting…
WebRTC Local IP Detecting…
WebRTC Public IP Detecting…
Leak Detected

DNS RESOLVER INFO

DNS Resolver (via IP) Detecting…
DoH (DNS over HTTPS)

WHAT IS A DNS LEAK?

When you visit a website, your browser asks a DNS server to translate the domain name into an IP address. If your VPN is configured incorrectly, these DNS requests may bypass the VPN tunnel and go directly to your ISP's DNS servers — exposing every site you visit.

HOW TO FIX LEAKS

Enable "DNS leak protection" in your VPN settings
Use a VPN that routes all DNS through its tunnel
Enable DNS over HTTPS (DoH) in your browser
Use a trusted DNS like 1.1.1.1 or 8.8.8.8
Disable WebRTC in your browser if not needed

What is a DNS Leak and How to Detect It

When you browse the internet and connect to a website, your computer must first translate the host name (like example.com) into an IP address. It does this by sending a request to a Domain Name System (DNS) server.

Normally, when you use a Virtual Private Network (VPN), all your internet traffic is encrypted and routed through the VPN tunnel. This includes your DNS requests, which should be handled exclusively by secure DNS servers provided by your VPN.

How DNS Leaks Happen

A DNS Leak occurs when your operating system defaults to sending DNS requests to your local Internet Service Provider (ISP) servers instead of routing them through the VPN tunnel.

While your actual web traffic remains encrypted, your ISP can still see every single domain name you look up. This reveals your entire browsing history, defeating the primary privacy purpose of your VPN. Our leak test generates unique, random subdomains to trace exactly which DNS resolvers handle your queries, showing you if your ISP is receiving your search logs.

Frequently Asked Questions

What is a DNS leak?
A DNS leak occurs when your web browser bypasses your active VPN's secure DNS servers and routes domain query requests directly to your Internet Service Provider's (ISP) default DNS servers. This exposes your browsing history to your ISP and eavesdroppers, despite using a VPN.
How does this DNS leak test work?
The test forces your browser to resolve dynamic, randomly generated subdomains that have never existed. These requests trigger a fresh DNS resolution request from your system's active resolver back to our authoritative nameserver, allowing us to see exactly which DNS servers resolved the domain name.
How do I interpret my test results?
If the DNS servers shown in the results list belong to your VPN provider or secure third-party servers (like Cloudflare, Google, or OpenDNS), your connection is secure. If you see DNS servers belonging to your home ISP, your system is leaking DNS requests.
How do I fix a DNS leak?
To fix a DNS leak: 1. Turn on DNS leak protection options in your VPN client settings. 2. Manually configure static, secure DNS servers (like Cloudflare's 1.1.1.1 or Google's 8.8.8.8) on your operating system or router. 3. Disable IPv6 if your VPN does not support IPv6 routing.