PNPrivNet

WireGuard® protocol · self-hosted

The VPN with no middlemen — because it's yours.

PrivNet is a portal in front of your own WireGuard servers. Add a device, get a signed config or a scannable QR, connect in under a minute.

Android app is a beta sideload build, not from the Play Store

How it works →

No account data sold. No shared exit nodes. No vendor to trust.

Why run PrivNet

Everything a hosted VPN promises, minus the part where you have to trust the host.

Your own exit nodes

No shared infrastructure and no third-party VPN company in the middle — traffic leaves through servers you provisioned yourself.

WireGuard-speed performance

Built on the WireGuard protocol: a lean handshake and modern crypto instead of legacy OpenVPN overhead.

Open by design

It's your codebase. Read every line, audit the auth flow, change the parts you don't trust — nothing is a black box.

No logs by construction

There's no analytics pipeline collecting connection metadata — because you never built one in. What isn't collected can't leak.

Servers wherever you deploy

Spin up an exit node in any region you can rent a VPS — your coverage map is exactly as wide as you make it.

One config, any device

Every device gets a signed .conf or a scannable QR — import it into the official WireGuard app on desktop or mobile.

How a session actually forms

1 · Generate keypair

Your browser asks the portal for a device. The server pairs a fresh public/private keypair and registers it against one exit node.

2 · Pull the config

Download the .conf file, or scan the QR with the WireGuard app — no typing keys by hand, no shared secrets over chat.

3 · Handshake & go

WireGuard does a Noise-protocol handshake directly with your exit node. Traffic is encrypted end to end from there.

Connect from anywhere

PrivNet issues the config; the official WireGuard app makes the connection. Install it once per device:

your deviceexit · Lagos

Built to be trusted by inspection, not by brand

PN

Self-hosted by default

There's no PrivNet-operated network to opt into. You provision the exit node, so there's nothing to take on faith about where your traffic goes.

Open source portal

The auth flow, the key generation, the peer application — all of it is plain code in this repo, not a claim on a marketing page.

No middlemen

No company between you and your exit node with its own incentives, logging policy, or jurisdiction to worry about — just your server.

From the blog

VPN security, self-hosting, and connectivity — real challenges and how PrivNet addresses them.

View all posts →

Frequently asked questions

How is this different from a commercial VPN?
Do I need to run my own server?
What happens if I revoke a device?
Read the full FAQ and usage guide →