Skip to content

2024

Mullvad browser audit

I audited Mullvad Browser: why does the browser contact the following endpoints?

What I did for this test:

  • downloaded the browser,
  • extracted it,
  • ran it with no interactions, in other words leaving the browser window alone for about 5 minutes.

I did not open any web page or did anything... I can tell that github is probably used for Ublock... But the rest stinks.

I ran the Browser in an ad-hoc network namespace to make sure that this traffic only comes from Mullvad browser.

I see google, cloudflare, fastly... edgecast

also who is edgecast?

Do they have any sort of agreement with these companies? Do they tell their users about this?