Consistent domain policy
Managed organization templates can apply threat sources, categories, services, schedules, and locked custom-domain decisions to assigned members.
Manually contracted Enterprise organizations can centralize DNS filtering with role-based access, managed policy, audit history, API and webhook automation, privacy-aware reports, SCIM, and delegated child organizations. OIDC and signed roaming remain gated.
Administration, DNS policy, automation, reporting, provisioning, and delegation are live for manually contracted organizations. Native and provider-dependent features stay visibly gated, and DNS filtering remains one layer of a wider security program.
QueryWarden Relay now supports credential-bound Linux forwarding for networks whose routers cannot use a custom DoH URL.
Assign locked organization templates, services, categories, schedules, and domain rules without changing member privacy settings.
Future signed clients will preserve policy away from the company network.
A small business can test QueryWarden on one compatible device with the Free plan. Central administration for multiple people, policies, and locations is currently provided through manual Enterprise onboarding; self-service Team billing remains planned.
Managed organization templates can apply threat sources, categories, services, schedules, and locked custom-domain decisions to assigned members.
Query logs, reports, exports, and alerts reflect the active retention and anonymization settings instead of implying visibility that was never recorded.
DNS filtering does not inspect full URLs or content, guarantee that every threat is classified, or make an organization compliant by itself. Use it with endpoint, identity, email, and browser controls.
Available for bounded Enterprise member and directory-group lifecycle automation.
Requires provider credentials and end-to-end validation before activation.
Available scoped exports, signed webhooks, and privacy-aware reports.
Available immutable records for organization administrative actions.
Manual Enterprise accounts can be configured after a direct review. Seat and device allowances plus delegated child organizations are live; custom SLA and regional data-residency terms remain separately scoped.