This is an automated archive made by the Lemmit Bot.

The original was posted on /r/selfhosted by /u/d0m1x on 2025-08-08 15:17:49+00:00.


Most blockers try to filter out the bad stuff. I took the opposite approach: block everything by default, and only allow what I need. No distractions, no noise – just silence until I say otherwise.

It’s a local DNS forwarder, written in Go. Works on macOS, Linux, and Windows. No cloud. No dependencies. Just a binary.

It has two modes:

  • Monitor mode: logs DNS activity so you can see what to allow
  • Focus mode: only your allowlist resolves – everything else gets NXDOMAIN

It’s kind of like Pi-hole, but reversed.

GitHub: https://github.com/berbyte/sinkzone

Selfhosters – curious what you’d add or change. It’s still early, but I’m already working on DoH, scheduling, and host profiles.