Answers to common questions, step-by-step guides, and a real person when you need one.
Standard DNS: 3.12.124.91. Encrypted DNS: DNS-over-HTTPS https://dns.dnsafe.net/dns-query and DNS-over-TLS dns.dnsafe.net (port 853). All plans use the same resolver; your filtering is picked by your registered network, or by the device’s own setup for phones and laptops added as devices. Setup guide →
DNSAFE is a private resolver. It knows whose rules to apply by the public IP address your lookups come from, and it refuses lookups from addresses that aren’t registered to an account. Add your network in your dashboard (my.dnsafe.net → Devices, or the partner portal → Tenant → IPs) before you change your DNS, or websites won’t load.
Run the DNS leak test. It shows which resolver actually answers your lookups; you should see DNSAFE. You can also look up blocktest.dnsafe.net: if you land on the DNSAFE block page, filtering is working.
Set the DNS server in your router (or firewall) to 3.12.124.91. Every device on that network is then protected, including phones, TVs and consoles. Router guide →
Give it its own encrypted DNS setup. At home: my.dnsafe.net → Devices → Add a phone, tablet or laptop. For a business: the portal → your network → Roaming devices. Each device gets its own setup (a profile link for iPhone, iPad and Mac, a Private DNS hostname for Android, a DoH address for Windows and Chromebook), and your rules then apply on any Wi-Fi or mobile data. Each device counts toward your plan’s devices or IPs.
Add an Allow rule for the domain in your dashboard (Rules) or, for a client, on the tenant’s Rules tab. Allow rules beat the threat list and category packs. If you think we’ve blocked it by mistake, tell us and include the domain. Rules guide →
Changes reach the resolvers within about 5 minutes. Your devices may also remember the old answer for a few minutes; flushing the DNS cache or restarting the browser makes it immediate.
Yes. Add days and a start and end time to any rule, for example block social media on school days from 8:00 to 15:00. Times use US Eastern time, and overnight windows like 22:00–06:00 work. Scheduled rules →
Optional categories you can switch on per household or tenant: Adult Content, Gambling, Crypto Mining, Social Media, Streaming, and DNS Shield (keeps protection on devices away from home). Prices are shown before you buy.
In the partner portal, create a tenant, register the client’s public IP addresses under IPs, then set their router or firewall DNS to 3.12.124.91. Use IP groups to give part of their network (for example guest Wi-Fi) its own rules. Partner guide →
Yes, on Growth and Enterprise. Add your logo, colors and support email, and serve the portal from your own subdomain; SSL is set up automatically. White-label guide →
Yes. Create a key in the portal under API Keys and send it as a bearer token to https://api.dnsafe.net/api/v1. You can manage tenants, IPs, groups and rules and read logs. API reference →
Business and MSP plans come with a 14-day free trial and you don’t need a card to start. Home has a Free plan instead of a trial; paid Home plans are billed from the day you upgrade.
Open Billing in your dashboard (my.dnsafe.net for home, portal.dnsafe.net for business and MSP). Upgrades apply straight away; cancellations and downgrades take effect at the end of the billing period. See the refund policy.
Use Forgot password on the sign-in page. We’ll email a link that works for one hour.
Almost always, your public IP isn’t registered yet, or it changed. Most home internet providers change it from time to time, often after a router restart. Check your current address on What’s my IP, update it in your dashboard, and wait a minute.
That’s expected. On mobile data your phone has a different, unregistered IP. If you set Android Private DNS to dns.dnsafe.net, switch it back to Automatic when you leave home Wi-Fi, otherwise sites won’t load.
Browsers with “Secure DNS” turned on (Chrome, Edge, Firefox) can send lookups to their own provider and skip your network’s DNS. Set their secure DNS provider to https://dns.dnsafe.net/dns-query, or turn the option off.
Send us a message and a person will reply by email, usually within one business day. Include any domains, error messages or screenshots that help explain the problem.
Prefer email? support@dnsafe.net · Service status: status.dnsafe.net
Already a customer? You can also open tickets from inside your dashboard.
Ticket . We’ll reply to .