Tunl

Tunl

Tunl is a native macOS client for the WireGuard® VPN protocol, built around the failure nothing else catches: a tunnel that says connected while nothing is actually getting through.

A dropped peer, a server whose upstream went down, an endpoint that moved — WireGuard itself does not notice any of it, and neither does the menu-bar icon. Tunl watches the handshake and the byte counters, says plainly when the tunnel has stalled, and can re-resolve the endpoint and repair it on its own. That watchdog runs inside the tunnel, so it keeps working with the app closed.

What it does

Built on Apple's Network Extension framework and the audited WireGuardKit library, so it is fully sandboxed — no root access, no background daemons, no command-line setup. There are no accounts, no analytics, and no telemetry: Tunl collects nothing and talks only to the VPN server you configure.

Bring your own WireGuard server, or any provider that gives you a .conf file.

See the privacy policy or visit the support page for help.