Per-App Firewall and Traffic Control
Rethink gives Android users per-app control over internet access through a firewall built around the system VPN interface. Users can choose which apps may connect over Wi-Fi or mobile data, apply rules to individual apps, and stop unwanted connections before they leave the phone. This is useful when an offline tool has no reason to communicate online or when a user wants tighter control over background traffic.
The home screen groups Firewall, Apps, DNS, Proxy, and Logs around one start control, so the main protection modes remain easy to reach. Configuration entries extend those controls with per-app network policy, IP and domain rules, and options that respond to connection type or device state.
Encrypted DNS and Content Blocking
Encrypted DNS gives Rethink a second layer of control beyond blocking an entire app. Users can send DNS requests through supported encrypted resolvers and apply blocklists to unwanted domains, allowing normal connections while refusing known advertising, tracking, phishing, or malware destinations. That approach is useful when an app still needs internet access but some endpoints should remain unavailable.
DNS controls sit beside the firewall on the home screen, while the configuration area provides a dedicated DNS section for resolver and filtering choices. Because DNS rules and firewall rules can work together, users can build a policy that ranges from broad per-app blocking to more selective domain-level filtering.
Connection Logs and Data Statistics
Rethink records connection activity so users can understand which apps communicate, when those connections occur, and how much data they use. Searchable DNS and network logs help connect a destination to the responsible app, while statistics organize traffic across shorter and longer time windows. These tools turn background network behavior into information that can guide later firewall or DNS decisions.
The Stats area offers one-hour, 24-hour, and seven-day views, and the configuration menu includes a Logs entry for DNS queries and connection records. Users can review activity first, then return to app, IP, or domain controls when a connection deserves a different rule.
WireGuard, Proxy, and Network Routing
Rethink also supports network routing for users who need more than DNS and firewall controls. WireGuard configurations can direct selected traffic through compatible VPN providers, while SOCKS5 and HTTP proxy options add alternative routes for supported connections. Split-tunnel choices make it possible to handle different apps or destinations with different paths instead of forcing every connection through one route.
The Configure area groups Apps, DNS, Firewall, Proxy, Network, Settings, Logs, and anti-censorship tools in one place. This layout helps experienced users combine local traffic rules with proxy or WireGuard routing, while beginners can start with the main DNS and firewall controls and expand their setup gradually.