Local policy decisions
Domain matching is performed locally against the configured not-trusted or blocked-domain policy.
ANDROID · DNS FILTERING · RESPONSIBLE PROTECTION
MindGuard is a lightweight Android protection app that uses local, domain-level DNS decisions to block configured destinations while allowing ordinary browsing to continue.
No MindGuard account for core features. No TLS interception. No remote browsing proxy in the current architecture.
BUILT FOR CONTROL, NOT SURVEILLANCE
MindGuard is intentionally narrow in scope. The current app focuses on DNS-level filtering instead of decrypting HTTPS traffic or sending general browsing traffic through a MindGuard proxy.
Domain matching is performed locally against the configured not-trusted or blocked-domain policy.
The current design avoids TLS interception, tun2socks-style tunnelling, SOCKS proxying, and packet-payload inspection.
Manage domains, view protection state, and use device-level controls without requiring a MindGuard account.
An optional Gemini integration can classify a predefined candidate list without sending browsing history or page contents.
HOW IT WORKS
Android grants MindGuard a local VPN interface for DNS-level filtering.
The local decision engine compares the DNS request with the configured policy.
A blocked match can receive a local negative DNS response, while allowed or unknown requests can continue normally.
AUTHORIZED USE
MindGuard is intended for authorized parental-control, self-control, productivity, educational, and research use. Do not install or configure network controls on another person's device without appropriate authorization.