ead>
                         kmOQO
                    LLQCUXh#
                 X]]>ii?<!Ykkk#
             dv][!i\     c]+1bbbh
           j]]!,           r?]dddwmk
       $/][l'              O]>pqqd/]OZp%
    q)]]l`                W?]]wwwd   z]J0w%
  0]-l'                  \?][mmmm       L[zQd
  C[,                 q[??]COOOa          uQw
  J]:               (????JQQZ             vLq
  C]:            v_--?fCCw                vLq
  C]:          [+__cU0tuZZO0wh            cLw
  J[:        {~\wbdfYZZZOOO0QLLo          cCw
  J]:      $udbdZtmm]>;/}]]]-~~JCd        vCZ
  J[:     &ddddtZh         u?????(#       vJm
  C];    &qppp/Z             {??---       uJm
  J];    *qqqLt               -----(      vUm
  C];    dwwwJL               x---_]      cUm
  U];    dwwmZU               j-___?      vUZ
  C];    omZZZC               _____<      cYm
  L]?(   #ZOOO00             r_____      0vYm
    01]?) B000QLLm         Or___+_    JzYCo
       $(]]}OQLLCCCJJCQJUYY_____-  YXYLC
          ]|??LCCCJJUUUYY-____-8cYYQ]
             X/--jzcr}______(nYY0
                 f--ij   hnYYm
                    r-_1UUq
                       X$

Syxx DNS Leak Test

Check if your DNS queries are leaking to third-party resolvers.

Free · No account required

A DNS leak occurs when your device sends DNS queries to a resolver you didn't intend to use — typically your ISP's resolver instead of your VPN's or encrypted DNS provider's resolver. This means your browsing history is visible to parties you expected to be hidden from.

This test issues unique DNS lookups through your browser, records which resolvers forward them to our authoritative server, and reports what it found.

Standard: 6 unique lookups · Extended: 20 unique lookups

How it works

Step 1: We generate unique, random subdomains under our authoritative DNS zone.

Step 2: Your browser resolves those subdomains. Whatever DNS resolver your device uses will forward the lookup to our server.

Step 3: Our authoritative server records which resolver IPs forwarded the queries.

Step 4: We report which resolvers were observed. If you see your ISP's resolver when you expected your VPN's resolver, you have a DNS leak.

How to fix a DNS leak

• Configure your VPN to use its own DNS resolver (not your ISP's)

• Enable DNS-over-HTTPS or DNS-over-TLS in your browser or OS

• Disable IPv6 if your VPN doesn't tunnel IPv6 traffic

• Use Syxx for deeper investigation — process-level leak attribution, DNSSEC validation, and cryptographic evidence

Syxx · A DNS investigative and protection suite

© J.J. Warne d/b/a MilkandGin · All rights reserved

syxx.app · feedback@milkandgin.com