Mesh VPNs and private networks
Husarnet privacy rating
Peer-to-peer VPN from a company in Poland, built for robotics and IoT, that gives each device an IPv6 address derived from its public key, with a hosted dashboard and relay servers.
Summary
Husarnet scores 44 out of 100 (grade D) on the mesh VPNs and private networks criteria. It meets 2 of 7 criteria: no ads or data sales and keys stay on devices. It partly meets open source and self-hosted coordination server. It does not meet no trackers or telemetry and independent audit. Still needing evidence: no connection logs by default. It is based in Poland: Not in the Five, Nine or Fourteen Eyes; EU member (GDPR).
Score 44 out of 100. How scoring works
Criteria
-
Partial
Open source Weight 3 of 3
Is all the source code needed to run the product public?
The client is GPL-3.0 or MPL-2.0, but the dashboard and base servers are closed source.
-
No
No trackers or telemetry Weight 3 of 3
Are the website and apps free of third-party trackers, with any analytics anonymous and any telemetry off by default?
The website loads Google Analytics, Google Tag Manager and Hotjar.
-
Yes
No ads or data sales Weight 2 of 3
Is the product funded without advertising, ad targeting or selling user data?
Funded by paid plans, with a free plan and no ads.
-
No
Independent audit Weight 2 of 3
Has an independent security or privacy audit been published within the last three years?
No independent audit is published.
-
Yes
Keys stay on devices Weight 3 of 3
Is traffic encrypted between devices with private keys created on each device, so the coordination server and relays cannot read it?
Each device's address is derived from its own public key, and packets never leave devices unencrypted. Base servers only relay when a direct connection fails.
-
Partial
Self-hosted coordination server Weight 2 of 3
Can the coordination or control server be self-hosted with open-source software?
The dashboard and base servers can be self-hosted, but only under a paid proprietary license.
-
Unknown
No connection logs by default Weight 2 of 3
Are connection logs and client diagnostic logs kept off the vendor's servers unless a user or admin turns them on?
Needs evidence. Add it