Based in Switzerland. Supports: DNS-over-TLS (DoT), DNS-over-HTTPS (DoH) and DNSCrypt.
Reviewed by Marcus Holmberg
Quad9
quad9.net 4.7 (9)
Threat level
Covered
A covered pick. Anyone can use it as a private drop-in, with no setup or know-how. Enough for most people. Threat levels
Our take
A Swiss-based resolver that blocks known-malicious domains by default and speaks DoT, DoH, and DNSCrypt, which is a sensible privacy-and-safety combination for most people. The honest caveat with any public resolver is that you are moving trust from your ISP to them, so this is only as good as Quad9’s stated no-logging policy. A strong, low-effort default for households; power users who want to see and tune everything will prefer running their own.
Website at a glance
quad9.net
B+ score 80
Solid website security headers
Graded by Mozilla HTTP Observatory, tested 11d ago
Inspect this site yourself
Measures the security configuration of the tool's own website, not the privacy of the product itself. A strong tool can still score low here.
Quad9 alternatives
NextDNS The major advantage of NextDNS over AdGuard DNS is to be able to configure the service to your needs via parental controls, website restrictions or block whole categories of…
AdGuard DNS Easy to setup within minutes. Comes with setup guides for all systems. You only need to enter two IP adresses.
Nebulo (Android) Non-root, small-sized DNS changer utilizing DNS-over-HTTPS and DNS-over-TLS.
DNSCloak (iOS) Allows for the use for dnscrypt-proxy on an iPhone or iPad, which gives users the ability to encrypt their DNS requests through the use of an on-device VPN profile.
Control D Customizable encrypted DNS resolver supporting DoH, DoT, DoQ, and legacy DNS. Offers a free no-log tier and paid plans with a dashboard, per-device profiles, and content filtering.
Cloudflare Based in United States. Supports: DNS-over-TLS (DoT) and DNS-over-HTTPS (DoH).