What the tool measures
A scan compares the public HTTP exit address with WebRTC ICE candidates, observed DNS resolvers, browser timezone, language, device hints and connectivity signals. Each result remains visible so you can decide whether a mismatch is expected for your VPN, proxy, encrypted DNS or corporate network.
The score is a diagnostic estimate. A low score does not prove anonymity, and a high score does not prove that traffic leaked. Network providers, anycast DNS, browser privacy controls and split tunnelling can all produce legitimate differences.
How it is maintained
The browser implementation and scoring rules are published in the project repository. The production service uses a small Go backend for temporary DNS test sessions and local IP-to-network lookups. Changes are tested against the English and Chinese pages before release.
vpnleak is not affiliated with Google, Cloudflare, VPN vendors, browser vendors or the networks shown in a result. Product and company names identify technologies observed during a test; they do not imply endorsement.
Ownership and attribution
The site is operated as the vpnleak project at ip.maizimi.com and is based on MIT-licensed open-source work.