New: a threat-model-first guide to choosing your network defence, plus the nym-smoldvpn dVPN package and nym-swizzle sender hygiene.
Network
Configurations
Unprotected

Unprotected on the open internet

IP hidden · P1@L2Req-unlink · P2@L2Local net · P1@L3LGlobal net · P1@L3GFast

Sees

  • Real client IP
  • Every request
  • All request timing and content

Residual / countermeasure

  • Everything is exposed with no adversarial effort. This is the baseline network protection must improve on.

Sees

  • Endpoints, timing and volume of the exchanged flows

Sees

  • Endpoints, timing and volume (collapses with L3L on a direct connection)

Cons / mitigations

  • Needs IP hiding, then timing and content discipline

Fit

  • Baseline only: offers no protection

Verdicts and the latency implied by the path are an illustrative model, not measured values.