How to choose a VPN (the honest way)
Forget the paid "Top 10" lists. A good VPN choice comes down to a handful of things you can check yourself. Here are the seven criteria that actually matter, the red flags that should make you walk away, and a checklist you can run on any provider.
First, be clear what a VPN is for
A VPN encrypts the traffic between your device and a VPN server and hides your IP address from the sites you visit. That's genuinely useful on public or untrusted Wi-Fi, for stopping your internet provider from seeing which sites you browse, and for changing your apparent location. It does not make you anonymous, stop the accounts you log into from tracking you, or protect you from malware and phishing. Match the tool to your actual goal — our blog goes deeper on threat models.
The 7 criteria that matter
- Independent security audits. Has a reputable third party audited the apps and the no-logs claim — recently, and more than once? Published audits beat marketing promises every time.
- A genuine no-logs policy. The provider should not keep logs that can tie activity back to you. Bonus points if this has been tested in court or by a real-world subpoena and held up.
- Jurisdiction & ownership. Which country's laws apply, and who actually owns the company? Transparent ownership and a sensible legal home matter more than a flag-waving "based in privacy-friendly country" tagline.
- Strong, modern encryption & protocols. Look for current protocols (such as WireGuard or OpenVPN) and strong ciphers. Ignore vague phrases like "military-grade" — they mean nothing specific.
- A reliable kill switch & leak protection. If the VPN drops, the kill switch should block traffic so your real IP isn't exposed. DNS/IPv6 leak protection should be on by default.
- Transparency reports & track record. Does the company publish transparency/warrant-canary reports? Has it handled past incidents openly? A history of honesty is a strong signal.
- Clear, fair pricing & refunds. Honest pricing (watch for steep renewal jumps), a real refund window, and privacy-respecting payment options. Price is the least important item on this list, not the first.
Green flags vs red flags
| Topic | Green flag ✅ | Red flag 🚩 |
|---|---|---|
| Logging | Audited no-logs, tested in practice | Vague "we don't log" with no audit |
| Audits | Recent, repeated third-party audits | No audit, or one from years ago |
| Ownership | Named owners, transparency reports | Hidden owners, shell companies |
| Marketing | Specific, honest claims | "100% anonymous", "unhackable" |
| Free plans | Free tier from an audited provider | Free VPN that sells data or ads |
| Reviews | Reasoned pros & cons | Only 5-star, affiliate-link-stuffed |
Myths worth busting
"A VPN makes me anonymous." It doesn't. It shifts trust from your network/ISP to the VPN provider — which is exactly why audits and no-logs matter. "Military-grade encryption." A marketing phrase, not a standard. "More servers = better." Usually a vanity metric. "Free is always fine." Some free VPNs fund themselves by logging and selling your activity. If you can't see how it's paid for, be cautious.
Your 60-second checklist
Before you pay for any VPN, tick these off:
- ☐ Recent, independent audit you can actually read
- ☐ No-logs policy in plain English
- ☐ Named company and a clear jurisdiction
- ☐ Modern protocol + an automatic kill switch
- ☐ Transparency report or warrant canary
- ☐ Honest pricing and a real refund window
This guide is general online-safety education, not professional security advice.