{
  "slug": "gnome-boxes",
  "category": "virtual-machines",
  "name": "GNOME Boxes",
  "description": "GNOME desktop app for creating, running and viewing local and remote virtual machines, built on QEMU, KVM and libvirt. It can download operating system images and set up guests automatically.",
  "website": "https://apps.gnome.org/Boxes/",
  "source": "https://gitlab.gnome.org/GNOME/gnome-boxes",
  "license": null,
  "platforms": [
    "linux"
  ],
  "jurisdiction": {
    "code": "US",
    "name": "United States",
    "eyes": "Five Eyes",
    "eu": false,
    "gdpr": false,
    "cloud_act": "provider"
  },
  "pick": false,
  "pick_reason": null,
  "disclosure": null,
  "grade": "B",
  "score": 80,
  "coverage": 100,
  "summary": "GNOME Boxes scores 80 out of 100 (grade B) on the virtual machines criteria. It meets 3 of 4 criteria: open source, no trackers or telemetry and no ads or data sales. It does not meet independent audit. It is based in the United States: Five Eyes member; subject to the US CLOUD Act.",
  "url": "https://privacyratings.com/virtual-machines/gnome-boxes/",
  "markdown": "https://privacyratings.com/virtual-machines/gnome-boxes/index.md",
  "answers": {
    "open_source": {
      "title": "Open source",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://apps.gnome.org/Boxes/",
      "note": "LGPL-2.1-or-later."
    },
    "no_trackers": {
      "title": "No trackers or telemetry",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://apps.gnome.org/Boxes/",
      "note": "No telemetry or analytics in the source code, and no third-party trackers were found on the website."
    },
    "no_ads": {
      "title": "No ads or data sales",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://apps.gnome.org/Boxes/",
      "note": "Free GNOME project supported by donations to the GNOME Foundation, with no ads."
    },
    "independent_audit": {
      "title": "Independent audit",
      "weight": 2,
      "answer": "no",
      "evidence": null,
      "note": "No independent audit is published."
    },
    "transparency_report": {
      "title": "Transparency report",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "user_notice": {
      "title": "Tells users about requests",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "tls": {
      "title": "TLS configuration",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "security_headers": {
      "title": "Security headers",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "web_standards": {
      "title": "Modern web standards",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    }
  },
  "tests": {
    "ssllabs": null,
    "observatory": null,
    "internetnl_web": null,
    "internetnl_mail": null,
    "trackers": [],
    "tested_at": "2026-10-01T06:38:36.367Z"
  },
  "last_modified": "2026-10-01T06:56:31Z"
}