Privacy Policy

Last updated: 2026-08-27

This policy explains what the dnsetter Android app (name.gpm.dnsetter) does with data. It covers the app only.

The short version: dnsetter changes one system setting on your phone and remembers what it changed, so that it can put it back. Nothing about your DNS, your VPN, your rules or your settings ever leaves the device. The only thing that leaves it is what you type into the report screen or the messages screen, and neither of those runs on its own.

Who is responsible

Gabriele Proietti Mattia is the data controller for the processing described here. Contact: apps@gpm.name.

What the app does, in data terms

To do its one job, dnsetter reads and writes Android’s Private DNS setting (private_dns_mode and private_dns_specifier), watches for a VPN connection through the system’s network callback, and asks Android which apps on the phone can create a VPN, so that a rule can be attached to one. That last question is answered on the device and the answer is used on the device: the list of your installed apps is never sent anywhere.

All of it happens on your phone, and none of it is transmitted.

Writing in, and reading the answers

dnsetter has a report screen — something is wrong, or an idea — and a messages screen where you can read what was written back. Both are in the Info tab, both are optional, and neither runs on its own: nothing is sent until you write something and press send.

This is the only reason the app asks for internet access at all.

What a report carries

It goes to apps-management.gpm.name, a service run by the author. It is not shared with anyone, not used to build a profile and not published: reports are read, given a state and answered by hand.

No advertising id and no install id, ever — in a report or anywhere else. And nothing about what dnsetter does on your phone is attached to a report: not which VPN you use, not which resolver you had configured, not what the app has switched.

Reading the answers, and the key that costs

A report is answered by email, to the address you typed into it. That is the whole of what is needed, and if you never open the messages screen nothing below applies to you.

That screen shows what you sent and everything written back, without going to find the mail. Since your reports are yours, it has to be sure it is you: it asks for the address and sends a six-digit code there. Once the code is checked the app keeps a key, and it is the one thing here that resembles a login, so it is worth being exact about it:

Sending a report needs none of this. You can report something having proved nothing, and that report carries no identifier of any kind.

Your name on the supporters list

The app can show who paid for it, and that list is public — on this site and in the app. Being on it is a separate decision from paying, taken on a screen of its own, and both defaults are no: somebody who never opens that screen is never listed.

Feature requests and votes

The same screen lists what people have asked for in dnsetter, and lets you ask for something and vote. Reading that list costs nothing and needs no address. Asking and voting do, for one reason: one vote per person is a promise, and without something to hang it on the count would mean nothing.

What is published is the request itself, once it has been read. Never your address, and never who voted for what.

What stays on your device

All of it is in the app’s private storage. Uninstalling removes it, as for any app, and it is included in Android’s backup so that a new phone starts where the old one left off.

The permissions, and what each is for

Diagnostics

There are none, in either build. No crash reporting, no analytics, no usage counters, and nothing switched off that could be switched on. The Play build differs from the F-Droid build in one thing only: it contains Google Play Billing.

What the app never does

For readers in the EU/EEA and the UK: what the app does on your device involves no transmission to Gabriele Proietti Mattia and so no processing on that side to which a legal basis under Article 6 would attach.

Where you write in — a report, the messages screen, a feature request or a vote — the processing is based on your request (Article 6(1)(b) and 6(1)(f)): you asked for an answer, and answering you requires keeping what you sent for as long as the question is open.

Retention

A listing — your chosen name — is kept until you take it down, which is one tap on the same screen that put it up.

Reports are kept while they are useful — an open one until it is answered, a closed one as the record of a decision. A screenshot is part of the report it came with and goes when it goes. Ask and yours is deleted, including the address you sent it from.

A sign-in key stops working a year after you last use it, and is withdrawn the moment you press Sign out. Deleting the app removes the copy on your phone.

On your device, your rules and the setting being held remain until you delete them or uninstall the app.

Your rights

Under the GDPR you may request access to, correction of, or deletion of your personal data. For anything you sent from the report or messages screen, write to apps@gpm.name and it is done by hand. For what is on your device, deleting it is a matter of clearing the app’s data or uninstalling it. You retain the right to lodge a complaint with a supervisory authority.

Children

dnsetter is not directed at children under 13 and knowingly collects no data from them — or from anyone.

Changes

Material changes will be published on this page with a new date at the top, and significant ones will be noted in the app’s changelog.

Last updated: 2026-08-27