Record a baseline first
Before connecting, note your normal public IP address, approximate IP-based location, and whether the websites you need are working. You do not need to publish or share the address. The baseline simply gives you something to compare with after the VPN connects.
Use a reputable IP information service and remember that city-level IP location can be inaccurate. A different city is not automatically a problem, and a correct city is not proof that the route is secure.
Connect and compare the route
After the VPN reports a connection, repeat the public-IP check. For traffic routed through the VPN, you would normally expect the visible public address to differ from your ordinary network address. If it does not, check whether the app uses split tunneling or whether the specific browser or app is excluded.
Then open a few normal HTTPS websites. A routing change that breaks DNS or general connectivity is useful diagnostic information. Capture the exact error instead of changing several settings at once.
Check DNS as a separate question
DNS translates names such as example.com into network addresses. VPN services may route DNS through their own resolvers, use a third party, or follow system settings. A DNS test can show which resolver appears to receive your queries, but interpreting the result requires knowing the provider’s intended design.
Do not label every third-party resolver a “leak.” Compare the result with the VPN provider’s documentation and your device settings. Private DNS on Android can also affect what you see.
Test reconnection and real apps
Switch from Wi-Fi to mobile data, return to Wi-Fi, and watch whether the tunnel reconnects. Then test the applications that matter to you. If an app is intentionally excluded, expect it to show the ordinary route.
A good test ends with a written result: what changed, what stayed the same, and which behavior you still need explained. That is more useful than a badge claiming “100% secure.”
Sources & further reading
This guide is general educational material. Platform behavior can change by version, device, network, and provider configuration.
Report an error or suggest a clarification ↗