NixNet
NixNet is an encrypted DNS provider by Amolith.
Score
Citation
Whatever data is collected is stored on servers I have sole control over and it won’t be shared with any third parties whatsoever.
Even if there is a reasonable delay before the data is fully deleted (as is common), the data still counts as "permanently deleted" and satisfies the parameters for this question.
Score
Notes
There is no personal information collected.
This may come in the form of outright data sharing or by using local third-party analytics software (such as Google Analytics, which collects a plethora of user information).
Note that whether the policy allows sharing aggregated user data does not affect this question.
If the personal data is encrypted when it passes through the third-party, it does not count as third-party access (as the data is inaccessible to that party).
If personal data has been made public by, for example, posting it to a blog, it does not count as private personal information (and is therefore not considered by this question).
Score
Citation
Whatever data is collected is stored on servers I have sole control over and it won’t be shared with any third parties whatsoever.
Score
Citation
I do live in the US; I have three servers here, three in Germany, and another in Luxembourg. If, for whatever reason, I’m compelled by law enforcement to give up your email, IP address, or any other information, I will even though I don’t want to. As such, I do whatever I can to make sure I don’t have that information. If I don’t have it, I can’t share it.
Score
Notes
This is never mentioned.
Score
Notes
No date or changelog provided.
Note that all companies operating in the EU are subject to Art. 33 of the GDPR, which requires companies to notify their data protection authority of a data breach within 72 hours of discovering it.
Score
Notes
No data could be used to contact a user.
Score
Notes
No contact information is collected that could make this possible.
This includes the use of data brokers and independent verification authorities (such as background check providers).
Score
Notes
No data is collected from third parties
Score
Citation
In short:
Haproxy TCP/HTTP logs are disabled. No IP addresses are collected.
Unbound debug logs are enabled (verbosity: 1).
Query amounts coming specifically from the DNS-over-TLS server aren’t counted.
Website/DNS-over-HTTPS gateway’s NGINX logs are disabled.
To elaborate on Unbound’s verbosity, if you have it installed, you can run man unbound.conf, search verbosity and read it yourself. More human-readably . . .
Level 0 only outputs errors
Level 1 gives high-level operational information (debug logs)
Level 2 gives detailed debug logs
Level 3 shows the admin what queries are going through Unbound
Level 4 gives lower-level algorithm information
Level 5 logs client information
Some services allow users to opt-out or opt-in to of non-critical collection or use of personal data, such as collecting data for personalized advertisements.
Score
Notes
No data is collected that isn't used strictly for providing the service.
Score
Citation
In short:
Haproxy TCP/HTTP logs are disabled. No IP addresses are collected.
Unbound debug logs are enabled (verbosity: 1).
Query amounts coming specifically from the DNS-over-TLS server aren’t counted.
Website/DNS-over-HTTPS gateway’s NGINX logs are disabled.
To elaborate on Unbound’s verbosity, if you have it installed, you can run man unbound.conf, search verbosity and read it yourself. More human-readably . . .
Level 0 only outputs errors
Level 1 gives high-level operational information (debug logs)
Level 2 gives detailed debug logs
Level 3 shows the admin what queries are going through Unbound
Level 4 gives lower-level algorithm information
Level 5 logs client information
Last Updated
June 24, 2020
Sources
Contributors