DNS leak test

When you’re on a VPN, your DNS lookups should go through the VPN’s servers — not your ISP’s. If they don’t, your ISP can see every domain you visit even while on the VPN. This test checks for inconsistencies that indicate a DNS leak.

Runs 5 probe requests from your browser and checks whether they all come from the same IP and ASN. If you’re on a VPN, inconsistency here means some traffic is bypassing it.

Enhanced mode — uses unique subdomains (*.dns-test.checkmiip.com) to force a fresh DNS lookup per probe, eliminating caching from the measurement. Requires the wildcard CNAME to be configured on the server.

Standard mode — runs 5 requests to /api/whoami with cache-busting. Still detects split-tunnel VPN configurations; only the DNS-caching variable is uncontrolled.