You might want to update this reply with The reality that TLS one.three encrypts the SNI extension, and the largest CDN is executing just that: blog.cloudflare.com/encrypted-sni Naturally a packet sniffer could just do a reverse-dns lookup with the IP addresses you're connecting to. You can use OpenDNS with It truly https://neily035mlb4.wikibriefing.com/user