Radical transparency

What we can see. And what we can't.

Most filters ask you to trust a black box. We'd rather show you exactly what a DNS service like ours can and cannot know about you, and the controls you keep over all of it.

How it works

Filtering needs the domain. Nothing more.

DNS turns a name like youtube.com into an address your device can reach. To block or allow it, we have to read that domain, and that is the whole of what we see.

We see

youtube.com

We don't see

Which video, your watch history, your account, or anything inside the page.

The full picture

What we keep, and what we never collect.

What we store

  • The domain a device asks for, and whether it was allowed, blocked, or cached
  • A category (e.g. social, ads, malware) and a timestamp
  • Your account email, plan, device labels, profiles, and custom rules
  • Aggregate counters (queries today, blocked today) for your dashboard

What we never collect

  • Full URLs, search terms, or the contents of any page you load over HTTPS
  • The IP address of the device making the query, in long-term storage
  • Your real name (pseudonyms are welcome)
  • Anything sold, rented, or shared with advertisers or data brokers, ever

Transparency report

Requests and incidents.

Last updated 2026-09

0

Government or law-enforcement requests for user data, ever

0

Security incidents or data breaches, ever

To date, Guardino has never received a government or law-enforcement request for user data, nor any order to hand over data or weaken our systems, and we have had no security breaches. If that ever changes, we will update this page, and we will challenge any request we believe is unlawful.

Retention

You decide how long anything lives.

By default we keep no query logs at all. Logging stays off until you turn it on. If you do, the searchable history is 30 days on Free, 90 days on Pro and a year on Team, and you can additionally keep older months as sealed archives for up to 24 months, encrypted in your browser and stored in Germany where we cannot read them. On any plan you can request deletion of your logs at any time.

Short-lived operational logs, the kind used to debug and stop abuse, are kept 14 days, then deleted automatically.

Where we're honest about limits

One strong layer, not a silver bullet.

DNS filtering is domain-level. We can block a whole domain, but we can't block a single bad page on an otherwise-fine site, and we can't see or change what happens inside an app once it has connected to a domain you allow.

So we don't pretend it replaces everything. It's one private, network-wide layer that covers every device at once. Pair it with on-device tools like Apple Screen Time or Google Family Link for timed limits, and you've covered far more than either does alone.

Who runs it

A small company with no data business.

Guardino is built by Guardino Technologies LLC, a Wyoming-registered company (file 2026-001882554) founded by Hakan Kaynak. We make money from subscriptions, not from your activity. The companies that help us run the service are listed openly, and we email you if that list materially changes:

Stripe

Payments

Cloudflare

CDN & security

Hostinger

Hosting

Hetzner

Resolvers & archives (DE)

Neon

Database

Microsoft Clarity

Marketing-site analytics

Vercel

App hosting

Google

Assistant answers

You can export your data as JSON, delete your account, request log deletion, or opt out of email at any time, from Settings or by writing to privacy@guardino.ai. The full legal detail lives in our Privacy Policy.

Don't take our word for it

Check it yourself.

Privacy you can audit beats privacy you have to trust. Here's how to confirm what this page says, in your own browser.

Run a DNS leak test

Confirm your queries resolve through Guardino over encrypted DNS and don't leak to your ISP.

Open the DNS leak test

Check your connection

See whether you're on DoH/DoT and which resolver is answering you right now.

Check my connection

Read the binding policy

Our no-log-by-default commitment and exactly what is and isn't stored are written down and enforceable.

Read the privacy policy

Common questions

The questions people actually ask.

Can Guardino see the websites I visit?+

We see the domains your devices ask for (like example.com) because that is exactly what a DNS filter has to read in order to block or allow it. We do not see the full URLs, your search terms, or the contents of anything you load over an HTTPS connection.

Do you sell my data?+

No. We never sell, rent, or share your DNS data with advertisers or data brokers. Our revenue comes from subscriptions, not from your activity.

How long do you keep my query logs?+

By default we do not keep them at all: logging is off until you turn it on, and a new account stores nothing. If you do turn it on, the searchable history is 30 days on Free, 90 days on Pro and a year on Team. You can also ask us to keep older months as sealed archives for up to 24 months: those are encrypted in your browser with a passphrase we never see, and stored in Germany, so we hold the file but cannot read it. Short-lived operational logs are kept 14 days, then deleted.

Do you store my IP address?+

Not in long-term storage. When logging is on, the query metadata we retain is the domain, the allowed/blocked/cached status, a category, the profile or device it came from, and a timestamp, not the IP address of the device that made the request.

Why don't you just promise you see nothing at all?+

Because it wouldn't be true. A DNS filter has to see the domain to decide whether to block it. Claiming otherwise would be marketing, not honesty. What we can promise is a minimal footprint, full control over your data, and that it is never sold. We'd rather earn trust by being precise than by overpromising.

Start free

Privacy you can actually verify.

Filtering that protects every device, keeps a minimal footprint, and hands you the controls. Free to start, with a fair-use allowance on us.

Start protecting your devices