Encrypted, fast, and built with privacy in mind. Our resolver blocks 1,479,825+ domains associated with ads, trackers, malware, phishing, and adult content.
Encrypted protocols are strongly recommended for maximum privacy.
Use a TLS connection to keep your DNS secure.
Port 443 with HTTP/2 for fast lookups, bypassing ISP blocks.
Unencrypted DNS (port 53) for universal compatibility.
One profile for everyone. There is no separate family endpoint to remember.
Pornography, adult and gambling sites are refused for every device pointed at this resolver, alongside malware, phishing and the usual advertising and tracking. It is not an optional mode and there is no setting to turn it on — plug in the address and the filtering is already there.
Counts are the domains each source list contributes to the store, live from the resolver. Blocklists were last rebuilt 4h 30m ago.
Worth being straight about, because this is the part people rely on most:
Something slipping through, or something harmless caught by mistake? Tell me and the lists get adjusted.
Check blocklist status or run a live DNS query.
| Time | Domain | Transport | Record | Action |
|---|
Two minutes, no software to install.
dns.aixxycode.id and tap Save.Android resolves this over DNS-over-TLS on port 853 and accepts a hostname only — an IP address will be rejected.
dig +short @103.42.245.56 doubleclick.net
# 0.0.0.0 → filtering is active
kdig -d +tls @dns.aixxycode.id example.com
# TLS handshake succeeded → DoT is working
Anycast nodes across the region, with live round-trip latency.
Detecting your network…
Our network consists of the highest quality Tier-1 providers, including Tata Communications, RETN, Orange, Softbank, IIJ, GSL, China Telecom, China Unicom, China Mobile and over 2,000 IX peers.
We are proud to guarantee a solid, reliable and proven 99.99% network uptime on all servers.
Closer nodes mean faster data. Our Indonesian nodes cut the distance versus servers in Singapore or the US, so sites feel more responsive. Jakarta to a local datacenter averages 1-5 ms, versus 15-30 ms to Singapore and 200 ms+ to the US.
Our Indonesian nodes peer directly with IIX, OpenIXP, JKT-IX, BIX, EPIX and other local exchanges. Traffic from Indonesian visitors stays on faster domestic routes instead of detouring abroad - unlike servers in Singapore or elsewhere, where it must cross international links first.
Domains are blocked if they appear on one of the public blocklists we aggregate (OISD, Hagezi, StevenBlack, Firebog, 1Hosts, and others). These lists target advertising, tracking, malware, phishing, gambling, and adult content. If a domain is incorrectly blocked, please contact us to review and adjust the lists.
There is no self-service whitelist at this time. If a legitimate domain is incorrectly blocked, send an email to hi@aixxycode.id with the domain name and the blocklist that flagged it. We will review and adjust the lists accordingly.
DNS-over-HTTPS (DoH) encrypts DNS queries inside regular HTTPS traffic on port 443. This prevents eavesdropping and manipulation by ISPs or attackers. It also makes DNS lookups indistinguishable from other web traffic, improving privacy. DoH is supported by all modern browsers and operating systems.
No. We do not store query logs or link your lookups to any user or IP address. Only anonymous aggregate counters, such as total queries, cache hit rate and latency, are kept for capacity planning and shown on this page. Your browsing history stays yours.
Any device that can use a custom DNS works: Android, iOS, Windows, macOS and Linux, plus routers and browsers. Prefer DoH or DoT for encryption, and use plain DNS (port 53) only on older devices. See the Setup section above for step-by-step instructions.
Queries are answered and forgotten. Only aggregate counters — the ones on this page — are kept.
The blocklist targets advertising, telemetry, phishing and malware. Nothing political, nothing editorial.
Run by one person on one box. It is stable, but it carries no SLA — do not put a hospital on it.
Rate limits apply per source address. Bulk scanning and amplification attempts are dropped at the edge.
Interested in collaborating with aixxy-dns? We are open to infrastructure partnerships, sponsorships, and joint projects. Whether you run a network, a community, or a service that aligns with a faster and safer internet, let's talk.
hi@aixxycode.id