How We Test

Last updated: July 20, 2026

VeilNorth reviews are designed to explain what a product does, what it does not do, and who may benefit from it. Testing methods vary by product category, but the principles below remain consistent.

What we examine

  • Privacy: data collection, account requirements, default settings, tracking, retention, jurisdiction, and policy clarity.
  • Security: encryption design, authentication, update practices, known limitations, audit history, and incident response where documented.
  • Usability: installation, everyday workflows, accessibility, support, and how clearly the product explains important choices.
  • Performance: practical speed, reliability, resource use, and compatibility where relevant.
  • Transparency: ownership, documentation, open-source availability, independent audits, and communication about changes.
  • Value: price, free-tier limits, refund terms, feature restrictions, and credible alternatives.

Testing approach

Where feasible, we install and use the product on supported platforms, inspect settings and network-facing behaviour, compare published claims with documentation, and reproduce important user workflows. We distinguish direct observation from vendor claims and from third-party findings.

Ratings

Ratings summarise a product at the time of review. They are editorial judgments, not mathematical guarantees. A product can score highly overall while remaining unsuitable for high-risk users or a specialised threat model.

Limitations

VeilNorth is not a penetration-testing laboratory. Unless an article explicitly says otherwise, a review should not be interpreted as a full security audit. Products, prices, policies, and ownership can change after publication.

Commercial relationships

Affiliate availability is not a testing criterion. We may review products that do not pay commissions and criticise products with which a commercial relationship exists.