Public routing explainer

See where your traffic goes.

PHANTOM gives users a more understandable network path. Your device connects with a dedicated WireGuard profile, DNS requests stay inside the PHANTOM stack, and your profile page shows whether the tunnel is live.

Routing path

Your deviceYou install WireGuard and import the personal PHANTOM VPN profile from the signup page.
DOWNLINK
PHANTOM gatewayYour encrypted tunnel terminates on the PHANTOM server, where policy, usage metering, and profile-level controls are applied.
FILTERING
DNS protectionDNS lookups are resolved through the PHANTOM stack instead of leaking to your local network resolver.
EGRESS
Public internetTraffic exits with the PHANTOM server identity instead of your local ISP identity.

What users should expect

You create a PHANTOM account from the VPN page and receive a personal WireGuard QR code.

You do not log in with TOTP as an end user. TOTP is reserved for admin access only.

Your profile page shows remaining trial time, current connection state, and payment status.

What admins should expect

The admin page uses the current six-digit authenticator code as the sign-in password.

The monitoring dashboard is also admin-only and reuses the same session token after login.

Payment approval reactivates the same user profile instead of forcing a new VPN import.

Where to go next

New users should start on the VPN page.

Users who already created a profile should open the profile page.

Anyone who needs the full walkthrough should use the Docs page.

Open VPN Page Open Docs