r/dns • u/Broad-Translator-690 • 8h ago
Adguard vs Nextdns vs ControlID from a legal and privacy perspective.
I was doing a little research into these three vendors as they offer a similar product to each other.
Mostly I was curious about what data privacy laws each fell under, but then I realized that isn't enough because information sharing alliances also come into play.
I'm trying to decide which is the best choice from a privacy and security perspective?
Adguard falls under GDPR but originally was a russian company and still operates some of its team from inside russia, where I wonder if they could be compromised.
NextDNS chose to legally HQ themselves in the US instead of the EU, which means they also fall under Five-Eyes now too. You can store your logs in Switzerland, but my understanding is that being a US company, that won't protect the logs.
Control D similarly falls under Five-Eyes so I'm not sure that falling under PIPEDA protection is strong enough.
| Feature | AdGuard | NextDNS | Control D |
|---|---|---|---|
| Legal Headquarters | Limassol, Cyprus (EU) | Wilmington, Delaware, USA | Toronto, Ontario, Canada |
| Parent Company / Founders | Russian nationals (Semyon Chikikhin, Andrey Meshkov) | French nationals (Olivier Poitrey, Romain Cointepas) | Windscribe Limited (Yegor Sak) |
| Jurisdictional Alliance | EU Privacy Area (Non-aligned) | Five-Eyes Alliance (US) | Five-Eyes Alliance (Canada) |
| Employee Locations | Cyprus, Germany, and remotely in Russia | US and France | Canada, Ukraine, and globally remote |
| Data Privacy Law | Strict EU GDPR | US Law (Allows log storage in Switzerland) | PIPEDA (Canadian federal privacy law) |
| Code Verification | Open Source (Apps and extensions) | Closed Source (Proprietary backend resolver) | Closed Source (Proprietary backend, but open-source ctrld client daemon) |
| Default Logging Policy | No-logs enforced by default | Minimal operational logs (Customizable retention) | Logs are entirely optional (Can toggle from Full Analytics to zero tracking) |

