Find your public IP addresses and check your connection for privacy risks and suspicious activity.
run
Options
Search for references
This is the search mode - you can use it to find references to any host in our cache. Just type the specified host and hit enter or click the button.
Nslookup arguments and description
NSLOOKUP is a programm for querying NS server for a specified domain. This tool is commonly used for detecting the IP address of the domain (A record), but can be used for receiving other NS records. It is very similar to DIG command. Unlike DIG, NSLOOKUP is based on its own resolver library.
Host
IP or domain (required)
NS server
DNS server IP or domain (optional)
Type
Port
-port=number (server port, default 53)
Debug
Debug2
Ping arguments and description
PING is the network command, which lets you check whether or not the host is alive and responding. The special protocol ICMP is used for pinging. See RFC 792 for ICMP protocol details. You can find the command arguments below.
Host
IP or domain (required)
Protocol
Packet size
-s number (default 56)
Map IP
MTU
Timestamp
Whois arguments and description
WHOIS searches Whois servers for the object (domain or IP). The special WHOIS protocol is used for querying the Whois servers. See RFC 3912 for the protocol specification. This command is available on all linux systems and has a lot of arguments. The most important argument is host address. See the arguments decription below.
Host
IP or domain (required)
Host arguments and description
HOST is a DNS lookup utility. You can use it to convert names to IP addresses and vice versa. It is similar to DIG and NSLOOKUP. This command is available on all linux distributives. There are several arguments. You can find decription of the arguments below.
Host
IP or domain (required)
NS server
DNS server IP or domain (optional)
Protocol
Type
All
Verbose mode
Traceroute arguments and description
TRACEROUTE is the network diagnostic command. This command tracks the route packets taken from an IP network on their way to a given host. ICMP or UDP packets are used. See the command arguments below.
Host
IP or domain (required)
Fragmentation
ICMP
TCP
Map IP
Protocol
Port
--udp=number (UDP destination port)
Geoiplookup arguments and description
GEOIPLOOKUP lets you detect the location of a host. A preparsed WHOIS database is used for detecting the location of IP or domain. There are a lot of independent geoip databases in the Internet, so the same host can have different locations in those databases. GEOIPLOOKUP is not a built-in Linux command. The command has only one argument - host address.
Host
IP address (required)
Dig arguments and description
The DIG command is a part of BIND package, available on all linux distributives. It is used for querying Domain Name Servers (DNS) using standard operating system libraries and display answers from these DNS servers. Domain Information Groper (DIG) is useful for troubleshooting DNS issues. You can find DIG arguments below.
Host
IP or domain (required)
NS server
@server (optional)
Type
Trace
Tcp
Ignore
AA only
AD flag
CD flag
Show class
Show TTL
Answer
Comments
Recurse
Short
Cmd
Identify
Stats
Authority
Additional
All
Multiline
One SOA
Fail
Best effort
DNSSEC
EDNS ID request
What does the VPN leak test check?
The test detects your public IPv4 and IPv6 addresses and checks your connection for DNS and WebRTC exposure, open ports, and IP blacklist listings. It also looks for proxy headers and a known Tor exit address, and compares the country and network provider associated with your IPv4 and IPv6 addresses when both are available.
How does the VPN leak test work?
Connect to your VPN, then click Run test. Several checks run in parallel, and the progress indicator shows how many have finished. The results appear in one table, with suspicious findings highlighted in red. Use the Details links to view the individual DNS, WebRTC, open-port, and blacklist results.
How can I tell whether my IP address is leaking?
Compare the detected addresses with the public IP address you use without the VPN. If your usual public IP address is still visible while the VPN is connected, traffic may be bypassing it. Check both IPv4 and IPv6, the DNS servers handling your requests, and any addresses exposed through WebRTC.
What do suspicious findings mean?
A highlighted result is something to review. WebRTC may expose an address you intended to hide, while unexpected DNS servers or different IPv4 and IPv6 networks may indicate a routing issue. Open ports, blacklist listings, proxy headers, and Tor exit addresses can identify services or connection characteristics without proving that your real IP address has leaked.
What if nothing suspicious is found?
This means the completed checks did not flag a problem. It does not guarantee anonymity or test every application on your device. Results marked Not detected or Not checked do not confirm that a check passed. You can also run the torrent leak test
and email leak test
to check those applications separately.