Answers to the questions we expect most — and a human at the end of the page.
That's usually VPNKill doing its job: when it's armed and your VPN is not connected, all non-VPN traffic is blocked. Either connect your VPN, or click the VPNKill menu bar icon and choose Disarm (or Pause for a temporary window).
VPNKill needs two one-time macOS approvals during onboarding: allowing the system extension in System Settings → General → Login Items & Extensions, and allowing the content filter when macOS asks. The in-app onboarding shows exactly where to click.
Yes — VPNKill is VPN-agnostic. WireGuard, OpenVPN, IKEv2, and corporate clients all work: it allows traffic on VPN tunnel interfaces and blocks everything that would leave through a physical interface. There is nothing to configure.
Drag VPNKill from Applications to the Trash — macOS removes the filter extension with it. For a fully scripted removal you can also run:
/Applications/VPNKill.app/Contents/MacOS/VPNKill --uninstall
Bugs, questions, ideas: support@vpnkill.com