Simple annual license
Try MacDNS before buying.
The trial enables the same features as a paid license for 21 days. No account or payment method is required.
Download MacDNS
Buy for $20/year
Open secure checkout in a separate pageNeed help? Contact support
Payment successful.
Thank you for choosing MacDNS.
Check your email for your license.
Your license and receipt will arrive by email. Delivery may take a few minutes.
Requires macOS 14 or later. Annual subscription renews automatically unless cancelled at least 48 hours before renewal.
Annual license
For 2 Macs$20USD / year
Launch price · regular $40
21-day trial before you buy. No card required.
- Cloudflare, Google, and Quad9 over DNS over HTTPS
- Parallel, adaptive staggered, and sequential queries
- Background answer comparison and optional latency refinement
- Six blocklist categories
- Persistent cache, prefetch, and Serve Expired
- Custom forward zones
- A, AAAA, CNAME, MX, TXT, PTR, and NS overrides
- DNS rebinding protection
- Optional blocking of DoT, DoQ, and known DoH providers
- Verified protection status and automatic recovery
- Universal Intel and Apple silicon build
- Try first
- 21-day trial
- Use it on
- 2 Macs
- Refund window
- 30 days
No payment method and the same features.
One license can activate up to 2 Macs.
For eligible purchases under the refund policy.
FAQ
Frequently asked questions
Licensing, installation, privacy, and what happens after the trial.
Why use more than one DNS provider?
If one provider is slow or unavailable, another may still answer. Parallel mode starts enabled providers together. Staggered mode gives the fastest-ranked provider a short head start, based on recent latency, then lets others join. The first positive answer is returned without waiting for background comparison. Multiple providers reduce dependence on a single resolver, but cannot guarantee a response during a network outage.
Does Answer Refinement make every website faster?
It can improve the choice of a cached DNS answer when providers return different destination addresses. In parallel or staggered mode, MacDNS first checks for agreement between providers. Without agreement, optional ICMP probes compare eligible public addresses and can update the cache for later lookups. The initial reply does not wait for these checks. Results depend on the available answers and network conditions, and ICMP latency does not measure full page-load speed.
What does MacDNS protect against?
MacDNS blocks DNS requests for domains on your selected blocklists, including domains associated with ads, trackers, and known threats. It also encrypts public DNS lookups to your selected providers. Blocking depends on the lists you enable and the DNS requests handled by MacDNS. It is a layer of DNS protection, not a file scanner or a tool for removing an existing infection.
What if a website stops working?
Check the Stats tab for a blocked domain and its category. If a domain you trust was blocked, add the matched rule to your allowlist or adjust the category level. You can turn exceptions on or off without deleting them. The Stats tab only shows blocklist activity, so a connection problem may have another cause.
Does MacDNS receive my DNS queries?
MacDNS-operated servers do not receive your DNS queries. Filtering happens on your Mac, and public queries that need resolution go to the DNS providers you enable. Those providers receive the queries sent to them. The app has no usage analytics, but licensing requires limited device data and this website uses analytics. See our privacy policy for the details.
How do I start the free trial?
Download MacDNS and enable protection. MacDNS creates the 21-day trial before starting its DNS service. No card or account is required, and you can activate a paid key later from the About tab.
Why does MacDNS use DNS over HTTPS?
Regular DNS is usually sent without encryption, so the network you are using and your internet provider can read the DNS requests leaving your Mac. MacDNS keeps blocklists, overrides, and private routes local, then sends public lookups over DNS over HTTPS to the providers you enable. This protects each request in transit, but the selected DNS provider still processes it. Cloudflare says it deletes public-resolver logs within 25 hours. Google says temporary logs containing IP addresses and query details are deleted within 24–48 hours, while sampled anonymized records may be kept. Quad9 says it does not collect or record user IP addresses. These policies are maintained by each provider and may change.
Which Macs are supported?
MacDNS requires macOS 14 or later. The download is a universal app for both Apple silicon and Intel Macs.
How many Macs can use one license?
Each license covers up to 2 Macs.
How are payments handled?
Dodo Payments is the Merchant of Record and shows the available payment methods at checkout. It handles payment processing, invoices, tax, fraud checks, and refunds.
Can I get a refund?
You can request a refund within 30 days of your original purchase. Email support@macdns.app with the order number and purchase email. See our Refund & Cancellation Policy for eligibility, exclusions, and your consumer rights.
What happens when the license expires?
The license renews each year unless cancelled at least 48 hours before the end of the billing period. Email support@macdns.app with your order number and purchase email to cancel. Cancellation turns off the next renewal and keeps your license active until the paid period ends. It does not automatically refund a payment. See cancellation instructions. If the paid period ends without renewal, protection remains unavailable until a valid license is activated.
How do I uninstall MacDNS?
Open MacDNS, turn off protection, and choose Remove All Components in General. Quit the app, move MacDNS.app to the Trash, and optionally remove
~/Library/Application Support/MacDNS to delete its local data.How do I verify that protection is active?
Use the status shown by MacDNS. It reports Protection Active only after an authenticated check confirms that the DNS proxy is intercepting requests and the resolver is ready.
Where can I find troubleshooting logs?
Run
log show --predicate 'subsystem BEGINSWITH "app.macdns"' --info --last 15m --style compact to inspect the last 15 minutes. Query and reply logging remain off by default.