Skip to main content

Privacy tool

Network Leak Check

This check runs in your browser and shows exactly what your connection reveals right now: your public IPv4 address, your ISP, your approximate location, and whether a routable public IPv6 address exists that could bypass a VPN tunnel.

What DNS does

DNS turns a domain name like example.com into an IP address your device can connect to. Without DNS, browsers would not know where to send most web requests. Because DNS reveals which domains you ask for, it can expose useful browsing metadata even when the page content itself is encrypted with HTTPS.

Why leaks matter with a VPN

If you connect to a VPN but part of your traffic still goes out over your ISP, the VPN is not protecting as much as you may think. The two most common gaps are DNS requests still being answered by your ISP's resolver, and IPv6 traffic escaping a tunnel that only carries IPv4. This is especially important on public WiFi, school networks, work networks, or any connection you do not control.

How to test on this page

With your VPN disconnected, note the IP address, ISP and location in the result card above. Connect your VPN, then press Run check again. The ISP and location should change to your VPN provider's. If they still show your real provider, the tunnel is not carrying your browser traffic. If the IPv6 row shows an address, that address reaches websites directly and should be shut off with your VPN's IPv6 leak protection. You can cross-check the visible address on your IP dashboard.

How to reduce leaks

  • Use a VPN app that includes DNS and IPv6 leak protection.
  • Enable the VPN kill switch if available.
  • Avoid manually setting ISP DNS while relying on a VPN.
  • Disable IPv6 on the connection if your VPN does not tunnel it.
  • Retest after changing VPN server, browser, or network.