Local score · temporary network calls

vpnleakIP Leak, DNS Leak & Browser Fingerprint Test

One scan for browser fingerprints, traffic paths, network environment, public IP and DNS resolvers.

IP & network risk
Your public IPDetecting…

WebRTC public IP countries: Starts together with the main scan.; DNS resolver IP countries: Starts together with the main scan.

0/ 100
Ready to scan

Fingerprint testBrowser and device signals
Traffic testRouting and transit patterns
Network testConnectivity and DNS
IP testExit IP and location

How the check works

An IP leak exposes a public address outside the VPN or proxy route you expect. A DNS leak sends lookups to an unexpected resolver, while a WebRTC leak exposes a different public address through ICE or STUN. A country mismatch can also come from encrypted or cross-region DNS, so it is a warning rather than proof of a leak.

The scan compares your HTTP exit IP, WebRTC candidates, observed DNS resolvers, timezone and browser/network signals. The combined consistency score is grouped as Low 0–30, Medium 31–60 or High 61–100; it is an explainable diagnostic estimate, not proof that a VPN is present or absent.

Also available over curl

Prefer the terminal? Hit the endpoint below — it estimates your risk from your IP geo + request headers, and replies in the language of your Accept-Language header.

$ curl https://ip.maizimi.com/api/check$ curl -H "Accept-Language: zh" https://ip.maizimi.com/api/check$ curl https://ip.maizimi.com/api/check?format=json

FAQ

What is an IP leak?

An IP leak happens when a website can see a public address outside the VPN or proxy route you intended to use. Compare the HTTP exit IP with WebRTC results and with the address shown when the VPN is disconnected.

What is a DNS leak?

A DNS leak means domain lookups reach a resolver outside the network path you expected, often an ISP resolver instead of the VPN resolver. Cross-region or encrypted DNS can also create a country mismatch without exposing your real IP.

What is a WebRTC leak?

WebRTC can use ICE and STUN to discover network addresses. If it returns a public IP different from the HTTP exit IP, real-time traffic may be bypassing the VPN or proxy path. Private or mDNS addresses alone are not proof of a public-IP leak.

Is any data uploaded?

The score and matched-signal list are calculated in your browser. DNS tests temporarily send test IDs and resolver IPs to this site’s backend and expire automatically. IP and network probes may also contact the site backend and public providers.

Privacy

Scoring stays in your browser. The DNS backend temporarily processes test IDs and recursive resolver IPs so it can return results; active tests expire automatically. IP and network probes may contact the site backend and public providers.

Read the full Privacy Policy