mDNSShark vs DNS Armor™
Price, ratings, monetisation and update history for both apps, side by side — with what reviewers say about each.
mDNSShark
Explore your local Wi-Fi network with ease. This app discovers printers, media servers, and IoT devices by tapping into network protocols. It offers a simple, private way to understand what's connected and how services communicate, with no external servers or data collection.
- Local network scanning
- mDNS, DNS-SD, SSDP protocol support
- Device and service discovery
- Private and no data collection
- Open-source development
- User-friendly interface
Read full descriptionHide full description
mDNSShark is an open-source iPhone application created by a small team of engineers who wanted a simpler, clearer way to explore local networks. By tapping into protocols like Multicast DNS (mDNS), DNS-SD, and SSDP, mDNSShark quickly uncovers printers, media servers, IoT gadgets, and other active services on your home or office Wi-Fi - no convoluted setup required. If you've ever wondered what devices are really on your network, or how various services talk to each other, mDNSShark is designed to give you those answers efficiently and privately. Simplicity is key: we've stripped away clutter so you can focus on scanning and understanding results. Every discovery operation runs right on your phone, with no external servers involved. We also do not collect or share any usage data - there's no telemetry, no user analytics, and certainly no hidden trackers. You remain fully in control, deciding if and when to allow local network access, which is all the app needs to function. Built by Engineers, Open to Everyone: mDNSShark was created by engineers who love transparent, lightweight solutions - yet it's also friendly for anyone curious about local network behavior. If you're a fellow engineer, a technologist, or just someone who enjoys problem-solving, you'll find plenty of ways to contribute. Newcomers can help refine the interface, add new features, or even propose deeper networking enhancements. Veterans can dive into advanced scanning logic, integrate emergent protocols, and optimize performance. We firmly believe that collectively, we can build an indispensable network tool for iPhone users everywhere. Current Development: mDNSShark is still in active development, with regular updates that refine performance, expand support for various network protocols, and polish the user experience. We welcome your ideas - whether it's a new device detection trick, an easier UI flow, or an innovative scanning feature. Our public repository provides a transparent view of current issues and ongoing discussions, letting you jump in wherever your skills or interests fit best.
DNS Armor™
Read full descriptionHide full description
DNS Armor™ for iOS is the iPhone and iPad agent for the Secure Domains DNS Firewall — an enterprise DNS protection service that blocks phishing, malware, command-and-control callbacks, and policy-violating domains at the resolver layer. IMPORTANT — HOW DNS ARMOR WORKS ON iOS DNS Armor™ uses Apple's Network Extension framework (Packet Tunnel Provider, NEPacketTunnelProvider) to install a local on-device VPN. This on-device VPN is the only way Apple permits third-party iOS apps to apply DNS protection system-wide. The VPN exists for one purpose: to intercept DNS queries from every app on your device so they can be securely resolved through your organization's DNS firewall. To be explicit about what this VPN does and does not do: • It intercepts DNS traffic only. Every DNS query from every app — Safari, Mail, Messages, third-party apps, background services — is captured and forwarded to your organization's Secure Domains cloud resolver over an encrypted DNS-over-QUIC (DoQ, RFC 9250) channel with certificate pinning. • It does NOT proxy your web traffic. HTTPS, video, FaceTime, downloads, and every other non-DNS data flow goes directly from your device to its destination, unmodified and never read by DNS Armor™. • It does NOT inspect SSL/TLS, decrypt content, or log browsing activity. • It does NOT route traffic through any external VPN server. The "VPN" is purely an on-device mechanism iOS requires for DNS interception — there is no remote tunnel, no IP-address change, no anonymization. iOS will display the standard one-time system prompt asking you to allow the VPN configuration. This is required for DNS Armor™ to function. The DNS Armor™ agent integrates with Connect-On-Demand for auto-start after reboot, Per-App VPN for BYOD, and Apple's Managed App Configuration channel for MDM-driven zero-touch enrollment. WHAT YOU GET • System-wide DNS protection via on-device Network Extension VPN • Encrypted DNS-over-QUIC with certificate pinning • Cloud-managed policy — your admin controls the blocklist • Per-domain bypass for internal/corporate names that need private DNS resolvers • Auto-start at boot via Connect-On-Demand • Real-time block-page redirection so users see why a site was blocked • Operational status reporting back to your admin console • Full MDM Managed App Configuration support — Jamf, Intune, Workspace ONE, Kandji, Mosyle • Per-app VPN profile compatible for BYOD scenarios • Native IPv4 and IPv6 support end-to-end FOR WHO DNS Armor™ for iOS is built for organizations enrolled in the Secure Domains DNS Firewall. An API code issued by your IT administrator is required to onboard. Without one the app cannot connect — it is not a consumer DNS app. GETTING STARTED Your admin provides an API code. Paste it on first launch, tap Enable Protection, and accept the iOS VPN configuration prompt. From then on, DNS Armor™ stays connected silently and reconnects automatically after reboot. For MDM-managed devices, the API code, hostname, and protection toggle can be pre-populated via Managed App Configuration — first launch completes with no end-user interaction. PRIVACY DNS Armor™ does not log your browsing activity to any third party. Encrypted queries go only to your organization's Secure Domains tenant — never to advertising networks or consumer DNS providers. Non-DNS traffic is not inspected or routed through the agent. The app reports only the minimum operational telemetry needed for enrollment and admin visibility (synthesized device ID, public/private IP, current connection state). See secure-domains.org/privacy. REQUIREMENTS • iOS or iPadOS 16.0 or later • An active Secure Domains DNS Firewall tenant • An API code issued by your administrator DNS Armor™ is a trademark of Secure Domains.
Screenshots
Verdict
The clearest difference is update cadence: DNS Armor™ at every 2 days against mDNSShark's every 2 months. DNS Armor™ also leads on iOS requirement (16.0 vs 18.2). On price, ads, in-app purchases and device support there is nothing between them.
Scored on Price · Rating · Positive reviews · Number of ratings · Update frequency · Ads · In-app purchases · Monetization · Best chart rank · Devices · Requires iOS
Both are free to download. Neither carries in-app purchases, so what you see is what you pay.
mDNSShark ships an update every 2 months, DNS Armor™ every 2 days. The most recent releases landed on September 14, 2026 and September 21, 2026 respectively.
| Parameter | mDNSShark | DNS Armor™ |
|---|---|---|
| Price | Free | Free |
| Rating | 5.0 (1 ratings) — better | — |
| Number of ratings | 1 — better | — |
| Update frequency | Every 2 months | Every 2 days — better |
| Ads | No | No |
| In-app purchases | No | No |
| Monetization | Free | — |
| Devices | iPhone | iPhone, iPad — better |
| Requires iOS | 18.2 | 16.0 — better |
| Further details — not scored | ||
| Size | 2 MB | 2 MB |
| Age rating | 4+ | 4+ |
| Developer | ShapeHaven Innovations LLC | Secure Domains LLC |
In-app purchases
mDNSShark
No in-app purchases
DNS Armor™
No in-app purchases









