{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreifbety2sldxkpqkhafi3bsez735f34d6s6ngxsmwcskn2l5hxefwi",
"uri": "at://did:plc:haakkg7y3xdghcdmprxeexso/app.bsky.feed.post/3mlbhpoazgwe2"
},
"path": "/t/vpn-bypass-ip-leak-affecting-all-android-16-devices/37677#post_12",
"publishedAt": "2026-05-07T13:49:57.000Z",
"site": "https://discuss.privacyguides.net",
"tags": [
"Feature request for not bypassing VPN, actual discussion",
"@uninvitedfriend",
"here in release 2026050400",
"here"
],
"textContent": "It is an older issue\n\nuninvitedfriend:\n\n> Similar:\n\nWhich Mullvad did mention GOS having a solution for already in one of the issues linked here:\n\nuninvitedfriend:\n\n> Feature request for not bypassing VPN, actual discussion\n> (“Won’t fix / Intended”)\n\n> Hey! Any chance of re-opening this issue/feature request since it has gotten quite a lot of upvotes?\n>\n> AOSP based GrapheneOS exposes this functionality in a separate settings screen under “Network & connectivity” → “Internet connectivity checks” where the user can select one of the following:\n>\n> GrapheneOS server\n>\n> Standard (Google) server\n>\n> Off\n>\n> Maybe something similar can be done in the AOSP?\n\nWhich is the same suggestion @uninvitedfriend made assuming you trust GOS, though you can’t use a different server you choose.\n\nThis new one was fixed here in release 2026050400:\n\n> disable registerQuicConnectionClosePayload optimization to fix VPN leak\n\nThough the patch has not yet reached stable as they had to pull it and make another release.\n\nI also want to bring attention to their response in the discussion for the release about internet connectivity checks here:\n\n> Internet connectivity checks aren’t a VPN leak. They bypass the Owner user VPN by design and are important for VPN support. They enable choosing a connection with internet access including for the VPN and are how captive portals are detected. The connectivity checks trigger notifying the user about a captive portal to use the captive portal handling app which is another special system component bypassing the VPN by design to enable handling the captive portal without disabling the VPN. The alternative would be having to create another profile to use the web browser without a VPN since VPNs are per-profile.\n\nLet me know if I got anything wrong please.",
"title": "VPN bypass IP leak affecting all Android 16 devices"
}