← My IP
DNS leak test

DNS leak

Before opening any site, your browser turns its name into an address through a DNS server — a resolver. Usually that’s your ISP’s server, and it sees every name you open. If a VPN is on but DNS requests still go to the ISP, that’s a leak: sites see the VPN’s address while the ISP — your whole history. Here you can see which resolvers actually came for your request.

Your address 216.73.216.184
Country by IP United States
starting the check…

resolvers in another country

observation window 5 min
ResolverISPCountry
not checked yet

What the states mean

in another country
The resolver is in a different country from your IP. Most often this means the VPN changed your address but DNS requests still go to your ISP — your browsing history leaks past the tunnel.
in your country
The resolver’s country matches your address. Without a VPN that’s normal; with a VPN — a sign that DNS goes through the tunnel or through the VPN provider’s resolver in the same country.
country unknown
The resolver came, but its address isn’t in the geolocation databases — rare, but it happens with fresh ranges.
How it works
Your browser requests a unique name in the dnsleak.chkip.info zone, which is served by our own DNS server. Whoever comes for that name — that’s your resolver. A third-party service can’t do this: it would see its own resolver, not yours.
Several rows
Your system and browser may ask several resolvers at once, and large ones come from different addresses. That’s normal; what matters is which countries they are in.
DoH and DoT
If DNS over HTTPS is on in your browser (Cloudflare, Google, NextDNS), the resolver of that service shows up instead of your ISP’s — and its country may differ from yours even though nothing leaks to the ISP.