Foundation for Applied Privacy DNS
Applied Privacy is an encrypted DNS provider by the Foundation for Applied Privacy.
Score
Citation
We do NOT share query data with third parties that are not directly involved with resolving the query (i.e. sending queries to authoritative nameservers for resolution).
Even if there is a reasonable delay before the data is fully deleted (as is common), the data still counts as "permanently deleted" and satisfies the parameters for this question.
Score
Citation
Since you can use our services anonymously (without registration) we do not have to store any personal information persistently by design.
This may come in the form of outright data sharing or by using local third-party analytics software (such as Google Analytics, which collects a plethora of user information).
Note that whether the policy allows sharing aggregated user data does not affect this question.
If the personal data is encrypted when it passes through the third-party, it does not count as third-party access (as the data is inaccessible to that party).
If personal data has been made public by, for example, posting it to a blog, it does not count as private personal information (and is therefore not considered by this question).
Score
Citation
We do NOT share query data with third parties that are not directly involved with resolving the query (i.e. sending queries to authoritative nameservers for resolution).
Score
Notes
No personal data is collected that could be shared.
Score
Notes
No personal data is collected.
Score
Citation
Changes
- 2019-05-31: added: DoH error logging to understand and solve software bugs
- 2019-12-23: Update DNS domains from appliedprivacy.net -> applied-privacy.net
- 2020-02-11: added: IP-version logging to better understand the impact of IPv6 issues.
Note that all companies operating in the EU are subject to Art. 33 of the GDPR, which requires companies to notify their data protection authority of a data breach within 72 hours of discovering it.
Score
Notes
No personal data is collected that could be used to contact a user.
Score
Notes
No contact information is collected ever.
This includes the use of data brokers and independent verification authorities (such as background check providers).
Score
Notes
No personal data is collected.
Score
Citation
We aggregate and store the following non-sensitive operational performance metrics for one year for capacity planning and error detection
Some services allow users to opt-out or opt-in to of non-critical collection or use of personal data, such as collecting data for personalized advertisements.
Score
Citation
Since you can use our services anonymously (without registration) we do not have to store any personal information persistently by design.
Score
Citation
We aggregate and store the following metrics for one year for capacity planning and error detection:
- how many queries per second we get on each server (via DNS-over-TLS and DNS-over-HTTPS)
- how fast we answer queries (in ranges: 0-66ms, 66-131ms, 131-262ms, 262-524ms, ...)
- how many queries we answer directly from the cache (cache hits)
- how many queries we get via IPv6
amount of queries by DNS flag (DNSSEC OK, EDNS OPT present, recursion desired, auth. answer, ...)
amount of queries by type (A, AAAA, PTR, ...) - amount of DNS answers by return code (NOERROR, FORMERR, SERVFAIL, NXDOMAIN, REFUSED, ...)
- amount of concurrently open HTTP connections (DoH)
- HTTP requests per second (DoH)
When you make use of our DNS-over-HTTPS service we log the following information on the webserver-level and store it for 14 days:
- timestamp
- HTTP response code (200, 404, ...)
- country from which the query is coming according to geoIP data (AT, DE, ...)
- The IP-version ("4" or "6") used to connect to us.
Last Updated
May 14, 2021
Sources
Contributors