# HNS DANE Browser — Handshake Proofs & DNSSEC

> Handshake Proofs & DNSSEC (iPhone/iPad app by Denuo Web, LLC.)

- Source: https://appshunter.io/ios/app/hns-dane-browser/id6791914326 (this page in markdown: same URL + `.md`)
- Developer: [Denuo Web, LLC](https://appshunter.io/developer/6791914328)
- Category: Utilities
- Price: Free
- Age rating: 17+
- Requires: iOS 17.0 · 47 MB
- Languages: American English
- Released: 2026-07-28
- Data updated: 2026-08-12
- User reviews in markdown: https://appshunter.io/ios/app/hns-dane-browser/id6791914326/reviews.md

## What is HNS DANE Browser?

HNS DANE Browser is a Handshake-first WebKit browser that verifies HNS proofs locally and shows how each name and connection was resolved.

Features:

- Browse Handshake names such as example/ and name.tld/
- Sync Handshake headers and verify name proofs on your device
- Resolve delegated names through authoritative DNS or RFC 8484 DNS-over-HTTPS
- Validate DNSSEC, TLSA, and DANE policies locally
- Inspect resolver paths, proof details, and security status
- Optionally enable requester-only HNS peer-to-peer DNS relay consumption
- Optionally configure recursive HNS DoH recovery when port 53 is intercepted
- Keep all HNS answers subject to local proof, DNSSEC, TLSA, and DANE validation, without HNS WebPKI fallback
- Keep website data in a persistent WebKit profile
- Download files and share pages with standard iOS controls
- Create or restore one device-local Handshake account identity, then open, unlock, and lock it; strict read-only fields remain unavailable because no scoped indexed backend is installed

The shared Rust runtime performs HNS resolution, DNSSEC and DANE validation, and app-local proxying. WebKit renders pages and handles normal WebPKI trust for ordinary internet sites.

The app has no developer-operated account, advertising SDK, analytics SDK, subscription, exchange feature, or paid feature unlocks. Its native wallet screen includes strict synchronized read-only fields, but this build installs no scoped credential or indexed backend, so balance, receive target, history, tracked names, and module status remain unavailable. Name import, sending or value movement, website-provider access, HNSA/HNSR, settlement, and P2P marketplaces are unavailable.


## Version history (last 3 releases)

### 0.5.10 — 2026-08-11

Adds device-local native wallet lifecycle controls and read-only balance, receive, history, names, and status fields, which remain unavailable without a scoped indexed backend. Also adds ECH for supported HNS origins, clearer sync/reset recovery, and code-split asset-burst handling without raising the total proxy limit.

### 0.5.5 — 2026-07-31

Fixes secure-browser startup on fresh iOS installs when the default protection policy is already active. Safe page loads now recover from brief connection losses during validated Handshake header maintenance. Authenticated ICANN TLSA absence now remains valid when DNS replies contain compressed negative records or resolution spans a clock tick. This update also keeps browsing responsive during sync, publishes header and peer state atomically, and adds hardened recovery for confirmed DNS interception.

### 0.5.0 — 2026-07-28

No release notes.

---

*Data collected daily from the US App Store and indexed by [AppsHunter](https://appshunter.io/). User reviews are verbatim App Store reviews. Ratings, prices and chart positions refresh continuously; this snapshot is from 2026-08-12.*
