CipherVPN is built on a security-first architecture with multiple layers of protection.
WireGuard Encryption
Modern cryptographic protocol with ChaCha20-Poly1305 encryption, providing state-of-the-art performance and security.
Zero Traffic Logging
We do not log, monitor, or store VPN traffic content. Only minimal connection metadata required for service operation is retained.
DNS Leak Prevention
All DNS queries are routed through encrypted tunnels, preventing DNS leaks and ensuring your browsing activity remains private.
Kill Switch
Enforced kill switch blocks all internet traffic if the VPN connection drops, ensuring your IP is never exposed.
Infrastructure Hardening
Our servers run hardened operating system configurations with regular security patching and access control enforcement.
Transparency
We publish transparency reports detailing any legal requests we receive and how we respond to them, consistent with applicable law.
If you discover a security vulnerability in our services, applications, or infrastructure, we want to hear from you. We are committed to working with security researchers to verify and address reported issues promptly.
Security Contact
security@ciphervpn.euAll security vulnerability reports are handled confidentially.
View security.txtWhat to include in your report
Our commitments to researchers
Out of Scope
• Social engineering attacks against CipherVPN staff
• Physical attacks against CipherVPN infrastructure
• Denial of service attacks
• Spam or automated scanning without prior approval
• Vulnerabilities in third-party software or services
• Accessing or modifying user data without permission