{
  "slug": "wireguard",
  "category": "self-hosted-network-security",
  "name": "WireGuard",
  "description": "VPN protocol and implementation built on modern cryptography such as Curve25519 and ChaCha20-Poly1305, included in the Linux kernel and available as apps for other platforms.",
  "website": "https://www.wireguard.com",
  "source": "https://git.zx2c4.com/wireguard-tools/",
  "license": null,
  "platforms": [
    "windows",
    "macos",
    "linux",
    "android",
    "ios"
  ],
  "jurisdiction": null,
  "pick": false,
  "pick_reason": null,
  "disclosure": null,
  "grade": "A",
  "score": 90,
  "coverage": 100,
  "summary": "WireGuard scores 90 out of 100 (grade A) on the self-hosted network security criteria. It meets 3 of 4 criteria: open source, no trackers or telemetry and no ads or data sales. It partly meets independent audit.",
  "url": "https://privacyratings.com/self-hosted-network-security/wireguard/",
  "markdown": "https://privacyratings.com/self-hosted-network-security/wireguard/index.md",
  "answers": {
    "open_source": {
      "title": "Open source",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://git.zx2c4.com/wireguard-tools/tree/COPYING",
      "note": "GPL-2.0 for the kernel module and tools; the other implementations and apps use MIT or Apache-2.0."
    },
    "no_trackers": {
      "title": "No trackers or telemetry",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://reports.exodus-privacy.eu.org/en/reports/com.wireguard.android/latest/",
      "note": "Exodus finds no trackers in the Android app, there is no telemetry in the source code, and the website loads no trackers."
    },
    "no_ads": {
      "title": "No ads or data sales",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://www.wireguard.com/donations/",
      "note": "Free software funded by donations and sponsors, with no ads."
    },
    "independent_audit": {
      "title": "Independent audit",
      "weight": 2,
      "answer": "partial",
      "evidence": "https://www.wireguard.com/formal-verification/",
      "note": "Independent academic formal proofs of the protocol and a verified Curve25519 implementation are published, but they are older than three years and no recent code audit report is public."
    },
    "transparency_report": {
      "title": "Transparency report",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "user_notice": {
      "title": "Tells users about requests",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "tls": {
      "title": "TLS configuration",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "security_headers": {
      "title": "Security headers",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "web_standards": {
      "title": "Modern web standards",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    }
  },
  "tests": {
    "ssllabs": null,
    "observatory": null,
    "internetnl_web": null,
    "internetnl_mail": null,
    "trackers": [],
    "tested_at": "2026-10-01T06:38:31.099Z"
  },
  "last_modified": "2026-10-01T06:56:31Z"
}