Apple’s attempt at system-wide filtering API — is it good? AdGuard’s research

💡
This research was originally presented at the Ad-Filtering Dev Summit 2025 (AFDS) by AdGuard CTO and co-founder Andrey Meshkov. The article below is an expanded and adapted version of that presentation. Check out this page for more content about AFDS.

Apple’s approach to system-wide filtering has recently introduced an API that differs significantly from what developers are accustomed to. The changes it brings have prompted me to think of several new ideas about how filtering can be implemented at the OS level, making it an interesting case study for the future of content blocking.

While discussions at AFDS typically focus on browsers and web extensions — the environments where most content filtering happens — system-wide filtering presents a broader and increasingly relevant challenge. Examining the limitations and capabilities of Apple’s new API offers insights that can help inform improvements in browser-based filtering as well. But first, let’s explore what exactly we mean by “system-wide filtering.”

What is system-wide filtering?

System-wide filtering is essentially the ability to intercept and block web traffic of any application, not just browsers’ traffic.

Filtering traffic inside a browser has always been relatively simple thanks to browser extensions. Even with Manifest V3, the browser still provides a clear, well-defined API for content filtering.

💡
API, or Application Programming Interface, is a ‘common language’ that lets different software systems communicate smoothly between each other, without needing to know how the other is built.

When we up the scale and look at operating systems, we see that they are a completely different story. None of them offer a dedicated API for filtering content, so ad-blocker developers have to rely on platform-specific techniques, and each of them comes with its own drawbacks.

You might ask — why does system-wide filtering even matter? Can’t we stick to browsers and just block ads there? According to recent studies, browser-originated traffic makes up less than 15% of total traffic on mobile devices. On desktops, browsers still dominate with around 55–60% of the overall traffic, but if you check the numbers across all platforms, only about 30% of total internet traffic comes from browsers. The other 70% comes from apps.

image02.png

And that’s where the real privacy challenge lies. Tracking inside apps is often far more invasive than on websites. Apps can access more personal data, interact directly with device resources, and use persistent identifiers that websites simply can’t. That makes the task of filtering the entirety of the device's traffic all the more important.

System-wide filtering has always been one of AdGuard’s core strengths. In fact, the very first version of AdGuard, released over 15 years ago, was a Windows application that blocked ads at the network level. Over time, we expanded to every major platform, developing dedicated applications like AdGuard for Mac and AdGuard for iOS — and went even further by launching AdGuard DNS and AdGuard Home, two more products aimed at protecting the entire device (or even the entire network!), not just at filtering traffic within a single browser.

That’s what makes this topic especially interesting to me. There’s still a lot of room for improvement, and I’m glad to see that one of the operating system vendors — Apple — is finally paying attention to it.

How it works

To understand my perspective, you first need to know how system-wide filtering began, how it works today, and what challenges the developers of ad blockers are still facing. A quick old-timer test: did you know that ad blocking actually began with HOSTS files that were used to redirect ad servers to non-existent IP addresses? HOSTS is a plain text file that maps hostnames to IP addresses, just like a DNS server does.

image03.png
Snippet from Peter Lowe’s blocklist

Of course, HOSTS files have their limitations: they’re static, they can only block exact domains, they’re hard to update, and they can be bypassed. Still, this was where it all started. Another common approach was DNS sinkholing — basically the same idea as HOSTS files, but applied at the DNS level so it works for many devices at once.

image04.png
Example of using a DNS server to block access to a domain

It solved some of the problems, but had important limitations: it still could only block domains, and still could be bypassed. For that reason, DNS sinkholing helps in many cases, but it isn’t a complete solution.

Next came proxies — servers that act as intermediaries between your device and the internet for HTTP traffic. This approach was extremely popular in the early days of ad blocking. Many of the “classic” tools used it, such as Ad Muncher or even early versions of AdGuard. The screenshot you see here is from about 15 years ago, when AdGuard (spelled Adguard back then!) essentially worked as an HTTP proxy.

image05.png

The main advantage of a proxy is that it can filter traffic based on full URLs and not just domain names — as long as the traffic isn’t encrypted. And even when it is, it still can see the domain name.

Whatever method you are using for system-wide filtering, the first technical challenge is intercepting traffic and routing it to your filter, be it DNS, proxy or anything else. Different platforms require different techniques:

  • Android: local VPN
  • iOS: local VPN, DNS settings extension
  • macOS: Network Extension (transparent proxy, DNS proxy)
  • Windows: WFP/TDI/WinSock/NDIS drivers

I won’t go into details for every single one of these methods, there is no need for that. It’s enough to know that all of them are non-trivial to implement, easy to get wrong, and frequently run into compatibility issues. Yet they’re the primitives we must live with if we want to filter traffic at the system level.

Even if we solve all the previous challenges, there’s still one big problem left — we need full URL visibility for accurate filtering. Why is that important? Let me give you two examples.

  1. The first one is Facebook’s ad network. Facebook serves both legitimate content and tracking requests from the same domain — graph.facebook.com. Without access to the full URL, blocking this domain would also break Facebook itself.
  2. The second example is the IAB’s new proposal called Trusted Server. I won’t go into details here, but in short, it moves ad auctions to the server side and delivers ads from a publisher’s own domain — making them appear as first-party content.

Right now, the only reliable way to inspect full URLs is to run a proxy with TLS interception. That, however, is an extremely complex task — but it’s something we still have to do.

image06.png
Proxy + TLS interception diagram

So someone has to observe your traffic for filtering to work — whether it’s a browser extension, a VPN, or an antivirus. That’s simply unavoidable. Ideally, this processing happens locally, on the user’s device. That’s safer because the data never leaves the device. But even that requires trust — and history shows that trust can be betrayed. So while local filtering is preferable, it’s not a guarantee of privacy — users must still place their trust in whoever runs the filter.

So, what should an ideal system-wide filtering solution look like? There are several criteria it should satisfy.

  1. First, it has to support full URL filtering — that’s essential for precision.
  2. Next, it should offer broad filtering capabilities. Just blocking requests isn’t enough; sometimes you need to modify or redirect them, or inspect responses.
  3. It should also handle very large blocklists.
  4. And yet updates must still be fast and efficient.
  5. Of course, it must be private by design — meaning the content blocker shouldn’t need to know which websites a user visits; it would just apply the rules locally.
  6. Still, the system should give some kind of feedback — at least basic statistics or confirmation of what’s been blocked — to make it observable and useful.
  7. Finally, proper debugging tools need to exist. Both for developers like us and for filter maintainers who need to troubleshoot their rules effectively.

With this list in mind, let’s move on to Apple's URL filter.

Apple’s URL filter

💡
Things are about to get rather technical in this chapter, so if you’re not in the mood for technical details, feel free to skim over it or to skip directly to Summary.

About ten years ago, Apple became the first browser developer to introduce a dedicated content-blocking API. Now, a decade later, they’ve taken another big step — this time at the operating-system level. For the first time, Apple is providing an official API for system-wide URL filtering. On paper, this is great news. And frankly, it’s something we’ve been waiting for — an exciting opportunity for anyone working in privacy and network filtering.

So let’s take a look at how this API actually works. We’ll start with a very high-level overview.

  1. First, your app registers a special URL filter within the operating system. This applies to both iOS and macOS.
  2. Then, to activate it, the system performs an authorization step — it communicates with your server to verify the configuration and credentials.

Once that’s complete, the filter enters the Running state, and from that point, the system starts using it to check request URLs. When the URL filter is active, it examines every web request made by any app on the system.

image07.jpg

Let’s look at what happens when an app wants to send a request to https://example.org/test:

image08.png
Apple’s URL filter high-level overview — Filtering

  1. The system splits the URL into sub-URLs.
  2. These are checked against a local prefilter to quickly decide which URLs can be classified as safe.
  3. The remaining are sent to your remote server for further verification.
  4. Based on the server’s response, the system either blocks or allows the request.

Now, it’s easy to see how a naïve implementation of this could turn into a privacy nightmare. To address this, Apple introduced several clever design decisions that aim to preserve user privacy while still enabling effective filtering.

The entire URL filter API is built on top of several modern privacy technologies.

  1. First, there’s Privacy Pass, which is used for user authentication.
  2. Next, there’s the Private Information Retrieval, or PIR service — used for server lookups. It’s accompanied by a Bloom filter, which acts as a local prefilter.
  3. And finally, there’s Oblivious HTTP.

All of these technologies are quite new and cutting-edge — so it’s fascinating to see Apple not only adopting them but integrating them into a real-world system like this. Let’s take a closer look at each of these components and how they work together.

Privacy Pass

The first component is Privacy Pass. It is a modern, privacy-preserving authentication system. It lets clients obtain anonymous tokens that prove legitimacy without revealing identity or behavior.

image09.png
Privacy Pass flow diagram. Source: Cloudflare Blog

As shown in the diagram:

  1. When a client sends a request to the Origin server, it can ask for a valid token.
  2. The client contacts an Attester to confirm its eligibility; if approved, an Issuer provides a Privacy Pass token.
  3. The client sends the token to the Origin, which verifies it with the Issuer’s public keys and accepts the request.

The core privacy idea is separation of roles: if the Origin and Issuer remain independent, authentication stays anonymous — the server knows the token is valid but not who the user is. That’s how Privacy Pass works in theory — but let’s look at how Apple actually uses it in their system.

image10.png
Privacy Pass — Apple’s PIR

  1. The client first authenticates using a persistent ID (such as user account) to get short-lived Privacy Pass tokens.
  2. Each PIR request redeems one of these tokens, proving legitimacy.

Looks similar to the original idea. But here’s the key point — unlike the ideal Privacy Pass design, both the Issuer and the Origin (the PIR service) in Apple’s system belong to the same entity, to the developer. Since the developer controls both, tokens can potentially be linked to users — so true anonymity depends entirely on the developer’s implementation. Now let’s focus more closely on PIR, or Private Information Retrieval.

Private Information Retrieval (PIR)

In simple terms, PIR is a family of cryptographic protocols that allow a client to retrieve data from a server without the server learning which specific item was requested. The idea isn’t new — it’s been explored since the 1990s. The oldest example of a PIR-like system in wide use is Google SafeBrowsing, introduced 20 years ago. It follows a similar principle, though without the heavy cryptography.

Apple’s implementation of Private Information Retrieval is a much more sophisticated system — a real, cryptographically private design. Here’s a high-level overview of how it works:

image11.png
Apple’s implementation of PIR

  1. The server prepares a database — essentially a hash table — where each entry is encrypted and indexed.
  2. It then publishes a configuration describing how clients should interact with the service: hash table structure, encryption parameters, and other metadata.
  3. When a client wants to check a specific URL, it determines the corresponding index in that hash table.
  4. The client then creates a query saying “I want item X”, but the query is encrypted, so the server cannot tell what item X actually refers to.
  5. The server evaluates this encrypted query using homomorphic encryption, producing an encrypted response that includes several possible entries.
  6. The client decrypts the response locally and checks whether X is among those results.
  7. If X is found, the request is flagged as blocked.

So as you can see, this looks like a truly private information retrieval and the goal seems to be reached.

But let’s talk about performance. Apple’s PIR system is heavy on resources:

  • Each query can be around 30 KB, which is quite large for a single API request
  • A single lookup may take over 100 milliseconds, even under ideal conditions

And, as you’d expect, the larger the database, the slower each lookup operation becomes. To solve this problem, Apple’s PIR API allows sharding — splitting the main database into smaller parts. The server defines several shards; when checking a URL, the client computes its shard number using a function and includes it in the request. This speeds up queries but introduces a potential privacy leak: given enough shards, a shard might correspond to a single URL, revealing what the user is checking.

Can this risk be mitigated? Yes, I think so, Apple could mitigate this by enforcing a minimum shard size or a maximum shard count, and I hope they’ll consider doing that. But even sharding isn’t enough if the client has to send every single URL to the server. So Apple added another optimization step — a prefilter, which is basically a Bloom filter.

image12.png
Bloom filter diagram. Source: bytedrum.com

I won’t go too deep into how Bloom filters work, but here’s what you need to know:

  • They’re very fast and space-efficient
  • A Bloom filter is designed to answer one simple question: “Is this URL in the dataset?”
  • Possible answers are:
    • Definitely not
    • Possibly yes (meaning it might be in the blocklist, so we should double-check it using PIR)

The result is that most lookups never leave the device.

Oblivious HTTP

The last component of the URL filter API is Oblivious HTTP. To recap, Privacy Pass ensures anonymous authentication, PIR hides the query, and OHTTP removes the final identifier — the user’s IP address. OHTTP separates the client from the server using four parties:

  • Client (user’s device)
  • Relay (Apple)
  • Gateway (developer)
  • Target (final server, PIR or Privacy Pass)

image13-2.png
Oblivious HTTP in Apple’s PIR

The client encrypts the request for the Gateway and sends it via the Relay, which just forwards it. The Gateway decrypts and processes it, encrypts the response, and sends it back through the Relay to the client. The idea is that the Relay knows who the user is but not what they send; the Gateway knows the request but not the user.

But even if you’ve managed to get everything working, there’s one last step — Apple’s review process. Before your app can use the new API, both your PIR service and your Oblivious HTTP gateway need to be reviewed and approved by Apple. Be prepared: the review can take quite some time, so plan ahead if you’re building around this API.

Summary

So how good is Apple’s URL filter? In the first chapter I presented a list of properties that an ideal system-wide filtering solution would display. Now, let’s revisit that list and see how Apple’s new URL filtering API measures up against those expectations.

✅ Full URL filtering

Check, no questions here.

🚫 Broad filtering capabilities

Unfortunately, this one doesn’t pass the test. Apple’s system lets you block requests, and that’s about it. There are also several important limitations on top of that:

  • You can’t unblock individual domains yourself — it’s all or nothing. Either the entire blocklist is active, or it’s completely disabled.
  • You can’t switch between multiple blocklists. Each app can only provide a single list.

Now, there are some theoretical workarounds — but those approaches are more like hacks than proper solutions.

✅ Support for huge blocklists

This one gets a clear check mark. The API was designed with massive blocklists in mind right from the start.

✅ Quick blocklist updates

Here, Apple also gets a check mark. The API supports automatic updates, and the minimum update interval is 45 minutes, which is actually quite good.

❔ Private by design

Now, this next point is a bit more complicated. For me, “private by design” means that when an app uses this API, the user remains completely anonymous, and there’s no possible way for the developer to learn who they are. And while that’s clearly Apple’s goal — the whole architecture is built around preserving user privacy — in practice, I can see a few loopholes that a developer could exploit to re-identify users or track their activity. Hopefully, Apple will address these issues in future revisions and make the guarantees of anonymity really strong.

🚫 API provides feedback

So, does the API provide any feedback to the developer about how it’s actually working? No. None at all. The app has no way to know whether its URL filter has blocked something or even checked a particular URL. In other words, it’s a completely opaque box.

🚫 Debugging tools

Unfortunately, there are no built-in tools to help developers or filter maintainers understand what’s going on under the hood. And as you can imagine, troubleshooting a URL filter is a very, very difficult task.

✅✅✅ And finally, despite all the shortcomings we’ve discussed, I want to end on a positive note. This API is infinitely better than not having one at all. It’s a big step forward — the first real attempt by any operating system vendor to make system-wide filtering both secure and privacy-preserving. I’m genuinely grateful to Apple for taking this initiative and being the first to think seriously about this use case. It’s not perfect yet, but it’s a very promising start — and I’m excited to see how it evolves in the future.

I’d like to add that we came up with our own implementation of PIR and it is currently being reviewed by Apple (for over a month, in fact). I hope very much that it will successfully pass the review sooner rather than later and we’ll be able to add this functionality to AdGuard products.


If you decide to experiment with Apple’s PIR system, here are a few tools and resources that might help you get started:

  • PIR service + Privacy Pass: Apple provides an example implementation of the PIR and Privacy Pass services. It’s not production-ready, but it’s a great reference to understand how all the components are supposed to work together
  • Testing PIR and Privacy Pass: To make testing easier, I’ve built a small command-line tool that can simulate the PIR and Privacy Pass flow — it’s open-source and available on GitHub
  • Bloom filter: Apple didn’t release any official code for building one, and their documentation on it was initially quite vague. So I created a Swift library that can generate Bloom filters fully compatible with Apple’s URL filtering API
  • Oblivious HTTP gateway: For Oblivious HTTP, Cloudflare provides both a reference library and a ready-to-use server implementation
  • GoCurl — testing Oblivious HTTP: And finally, if you need to test your OHTTP setup, you can use my long-term side project called GoCurl. It’s basically a Go-based reimplementation of curl, with extra features like built-in support for Oblivious HTTP
Thích bài viết này?
AdGuard VPN AdGuard DNS AdGuard Mail AdGuard Wallet
AdGuard VPN AdGuard DNS AdGuard Mail AdGuard Wallet
Màn hình chính của AdGuard cho Windows
Màn hình sự bảo vệ của AdGuard cho Windows, hiển thị các tính năng và cài đặt sự bảo vệ
Màn hình Thống kê của AdGuard cho Windows, hiển thị thống kê về quảng cáo và trình theo dõi Đã bị chặn
Màn hình Quản lý ứng dụng của AdGuard cho Windows, hiển thị các tùy chọn quản lý sự bảo vệ cho các ứng dụng được cài đặt trên thiết bị
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard: trình chặn quảng cáo cho Windows

AdGuard cho Windows không chỉ là một trình chặn quảng cáo. Đây là công cụ đa năng giúp chặn quảng cáo, kiểm soát truy cập vào các trang web nguy hiểm, tăng tốc độ tải trang và bảo vệ trẻ em khỏi nội dung không phù hợp
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Cửa hàng ứng dụng Microsoft
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
AdGuard cho Windows v8.0, thời gian dùng thử 14 ngày
Màn hình chính của AdGuard cho Mac
Màn hình Chế độ ẩn của AdGuard cho Mac
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard: trình chặn quảng cáo cho Mac

AdGuard cho Mac là một trình chặn quảng cáo độc đáo được thiết kế dành riêng cho macOS. Ngoài việc bảo vệ bạn khỏi các quảng cáo gây phiền nhiễu trong trình duyệt và ứng dụng, nó còn bảo vệ bạn khỏi theo dõi, lừa đảo và gian lận
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
AdGuard cho Mac v2.19, thời gian dùng thử 14 ngày
Màn hình chính của AdGuard cho Android
Màn hình Bảo vệ theo dõi của AdGuard cho Android
Màn hình Quản lý ứng dụng của AdGuard cho Android, hiển thị các tùy chọn quản lý sự bảo vệ cho các ứng dụng được cài đặt trên thiết bị
Màn hình Thống kê của AdGuard cho Android, hiển thị thống kê về quảng cáo và trình theo dõi Đã bị chặn
Màn hình chính của trình duyệt riêng tư của AdGuard cho Android
Mã QR để tải xuống AdGuard cho Android
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard: trình chặn quảng cáo cho Android

Chặn quảng cáo và trình theo dõi trên mọi trình duyệt, trò chơi và các ứng dụng khác. Bảo vệ quyền riêng tư của bạn và cho phép bạn kiểm soát cách các ứng dụng sử dụng Internet. Cài đặt qua APK
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
Quét để tải xuống
Sử dụng bất kỳ trình đọc mã QR nào có sẵn trên thiết bị của bạn.
AdGuard cho Android v4.14, thời gian dùng thử 14 ngày
Màn hình chính của AdGuard cho iOS
Màn hình sự bảo vệ của AdGuard cho iOS, hiển thị các tính năng và cài đặt sự bảo vệ
Màn hình Thống kê của AdGuard cho iOS, hiển thị thống kê về quảng cáo và trình theo dõi Đã bị chặn
Mã QR để tải xuống AdGuard cho iOS
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard: trình chặn quảng cáo cho iOS

Trình chặn quảng cáo iOS tốt nhất cho iPhone và iPad. AdGuard loại bỏ mọi loại quảng cáo và trình theo dõi trong Safari và bảo vệ quyền riêng tư của bạn trên tất cả các ứng dụng ở cấp độ DNS
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
Quét để tải xuống
Sử dụng bất kỳ trình đọc mã QR nào có sẵn trên thiết bị của bạn.
AdGuard cho iOS phiên bản 4.5
Màn hình chính của AdGuard Content Blocker
Màn hình Bộ lọc của AdGuard Content Blocker
Màn hình cài đặt của AdGuard Content Blocker
20.686 20686 đánh giá của người dùng
Tuyệt vời!

Trình Chặn Nội Dung AdGuard

AdGuard Content Blocker loại bỏ tất cả các loại quảng cáo trên các trình duyệt di động hỗ trợ công nghệ chặn nội dung — cụ thể là Samsung Internet và Yandex Browser. Tính năng của nó bị hạn chế so với AdGuard cho Android, nhưng miễn phí, dễ cài đặt và hiệu quả
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
Trình Chặn Nội Dung AdGuard phiên bản 2.8
Màn hình chính của AdGuard Browser Extension
Màn hình Bảo vệ theo dõi của AdGuard Browser Extension
20.686 20686 đánh giá của người dùng
Tuyệt vời!

Tiện ích mở rộng Trình duyệt AdGuard

AdGuard là tiện ích mở rộng chặn quảng cáo nhanh nhất và nhẹ nhất chặn hiệu quả tất cả các loại quảng cáo trên tất cả các trang web! Chọn AdGuard cho trình duyệt bạn sử dụng và nhận duyệt web không có quảng cáo, nhanh chóng và an toàn.
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
Tiện ích mở rộng Trình duyệt AdGuard phiên bản 5.5
Màn hình chính của AdGuard Assistant
20.686 20686 đánh giá của người dùng
Tuyệt vời!

Trợ lý AdGuard

Một tiện ích mở rộng trình duyệt đồng hành cho ứng dụng AdGuard trên máy tính. Nó cho phép bạn chặn các mục tùy chỉnh trên websites, thêm websites vào danh sách cho phép và gửi báo cáo trực tiếp từ trình duyệt của bạn
Trợ lý AdGuard phiên bản 1.4
20.686 20686 đánh giá của người dùng
Tuyệt vời!

Trang chủ AdGuard

AdGuard Home là một giải pháp dựa trên mạng để chặn quảng cáo và trình theo dõi. Cài đặt nó một lần trên bộ định tuyến của bạn để bao phủ tất cả các thiết bị trên mạng gia đình của bạn — không cần phần mềm máy khách bổ sung. Điều này đặc biệt quan trọng đối với các thiết bị IoT khác nhau thường gây ra mối đe dọa đối với quyền riêng tư của bạn
Trang chủ AdGuard phiên bản 0.107
Màn hình chính của AdGuard Pro cho iOS
Màn hình Bảo vệ của AdGuard Pro cho iOS, hiển thị các tính năng và cài đặt sự bảo vệ
Màn hình Thống kê của AdGuard Pro cho iOS, hiển thị số liệu về quảng cáo và trình theo dõi đã bị chặn
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard Pro cho iOS

AdGuard Pro cho iOS được trang bị tất cả các tính năng bảo vệ chặn quảng cáo nâng cao. Nó cung cấp các công cụ tương tự như phiên bản trả phí của AdGuard cho iOS. Nó nổi trội trong việc chặn quảng cáo trên Safari và cho phép bạn tùy chỉnh cài đặt DNS để bảo vệ tối ưu. Nó chặn quảng cáo trong trình duyệt và ứng dụng, bảo vệ con bạn khỏi nội dung không phù hợp và giữ an toàn cho dữ liệu cá nhân của bạn.
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
AdGuard Pro cho iOS phiên bản 4.5
Màn hình chính của AdGuard Mini cho Mac
Màn hình sự bảo vệ Safari của AdGuard Mini cho Mac
Màn hình tạo quy tắc của AdGuard Mini cho Mac
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard Mini cho Mac — trình chặn quảng cáo Safari

AdGuard Mini cho Mac là một trình chặn quảng cáo Safari mạnh mẽ. Ứng dụng nhẹ này loại bỏ quảng cáo, chặn các trình theo dõi, và tăng tốc tải trang. Nó giúp bạn trình duyệt trang web trong Safari mà không bị làm phiền và giữ dữ liệu của bạn được riêng tư
Cài đặt
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
AdGuard Mini cho Mac phiên bản 2.3
Màn hình chính của AdGuard cho Android TV với sự bảo vệ được bật
Màn hình chặn quảng cáo của AdGuard cho Android TV, hiển thị các tính năng và cài đặt của nó
Màn hình cài đặt của AdGuard cho Android TV
Màn hình Quản lý ứng dụng của AdGuard cho Android TV, hiển thị các ứng dụng nơi quảng cáo và trình theo dõi Đã bị chặn
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard cho Android TV

AdGuard cho Android TV là ứng dụng duy nhất chặn quảng cáo, bảo vệ quyền riêng tư của bạn và hoạt động như một tường lửa cho Smart TV của bạn. Nhận cảnh báo về các mối đe dọa trên web, sử dụng DNS an toàn và hưởng lợi từ lưu lượng truy cập được mã hóa. Thư giãn và đi sâu vào các chương trình yêu thích của bạn với bảo mật hàng đầu và không có quảng cáo!
AdGuard cho Android TV v4.14, thời gian dùng thử 14 ngày
Linh vật AdGuard, Agnar, đang cầm chú chim cánh cụt Linux
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard cho Linux

AdGuard cho Linux là trình chặn quảng cáo Linux trên toàn hệ thống đầu tiên trên thế giới. Chặn quảng cáo và trình theo dõi ở cấp độ thiết bị, chọn từ các bộ lọc được cài đặt sẵn hoặc thêm bộ lọc của riêng bạn — tất cả thông qua giao diện dòng lệnh
AdGuard cho Linux phiên bản 1.4
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard Temp Mail

Trình tạo địa chỉ email tạm thời miễn phí giúp bạn ẩn danh và bảo vệ quyền riêng tư của bạn. Không có thư rác trong hộp thư đến chính của bạn!
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard VPN

75 Vị Trí Trên Thế Giới

Truy cập mọi thông tin

Mã hoá mạnh

Không nhật ký

Đường truyền nhanh nhất

Hỗ trợ 24/7

Dùng thử miễn phí
Bằng cách tải xuống chương trình, bạn chấp nhận các điều khoản của Thỏa thuận cấp phép
Đọc thêm
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard DNS

AdGuard DNS là một cách tuyệt vời để chặn quảng cáo Internet không yêu cầu cài đặt bất kỳ ứng dụng nào. Nó rất dễ sử dụng, hoàn toàn miễn phí, dễ dàng thiết lập trên bất kỳ thiết bị nào và cung cấp cho bạn các chức năng cần thiết tối thiểu để chặn quảng cáo, quầy, trang web độc hại và nội dung người lớn.
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard Mail

Bảo vệ danh tính của bạn, tránh thư rác và giữ an toàn cho hộp thư đến thông qua các bí danh và Địa chỉ email tạm thời của chúng tôi. Trải nghiệm dịch vụ chuyển tiếp Email miễn phí và ứng dụng cho mọi hệ điều hành.
20.686 20686 đánh giá của người dùng
Tuyệt vời!

AdGuard Wallet

Ví tiền điện tử an toàn và riêng tư giúp bạn kiểm soát hoàn toàn tài sản của mình. Quản lý nhiều ví và khám phá hàng nghìn loại tiền điện tử để lưu trữ, gửi và trao đổi
Việc tải xuống AdGuard đã bắt đầu Nhấp vào nút có hình mũi tên để bắt đầu cài đặt. Chọn "Mở" và nhấp vào "OK", sau đó đợi tệp được tải xuống. Trong cửa sổ đã mở, kéo biểu tượng AdGuard vào thư mục "Ứng dụng". Cảm ơn bạn đã chọn AdGuard! Chọn "Mở" và nhấp vào "OK", sau đó đợi tệp được tải xuống. Trong cửa sổ mở, nhấp vào "Cài đặt". Cảm ơn bạn đã chọn AdGuard!
Cài đặt AdGuard cho cả thiết bị di động