Skip to main content
TACUNS
Back to Firewall App

Product Guide

TacU-NS Firewall

Version: 1.0 (2026 Edition)

Updated: May 2026

support@tacuns.net

"Your Device. Your Rules. Zero Compromise."

01

App Overview

What is TacU-NS Firewall?

TacU-NS Firewall is a powerful, no-root Android security application that gives users complete control over their device's internet connections. Operating entirely on-device, it provides enterprise-grade firewall capabilities directly in the hands of everyday users — without requiring system-level access or technical expertise.

Designed for privacy-conscious individuals, professionals, and families, TacU-NS Firewall delivers the kind of network protection that was previously available only on corporate IT infrastructures — now fully accessible from a single Android device.

The Problems It Solves

Invisible Data Leaks

Many apps silently send data to advertisers, trackers, and third-party servers without your knowledge. TacU-NS Firewall makes every connection visible and controllable.

Unrestricted App Access

Every installed app — including system apps — can freely use Wi-Fi and mobile data by default. TacU-NS Firewall gives you the power to revoke that access per app, per network type.

Malware & Phishing Domains

Malicious websites, phishing attempts, and known malware domains can be blocked at the network level before a single byte reaches your device.

Background Traffic Control

Apps constantly send background requests. Manage this and enforce screen time discipline with automated scheduling rules by time, day, and category.

02

Core Features

Each feature is designed to work independently or in combination, giving users layered security coverage.

No-Root Firewall Protection

Full firewall capability without requiring root access or device modification. Works out of the box on any compatible Android device.

On-Device DNS Shield

Intercepts and filters DNS queries entirely on your device. Blocked requests never leave your phone.

Per-App Internet Control

Block or allow internet access for any installed app individually (Wi-Fi, Mobile Data, or both).

Domain & Geo-Level Blocking

Block specific domains or entire Top-Level Domains (TLDs) from specific countries.

Community Blocklists

Subscribe to curated, regularly updated blocklists with tens of thousands of known ad-serving, tracking, and malware domains.

Scheduled Protection

Define time-based firewall rules. Automatically block categories during specified hours and days.

Real-Time Logs & Smart Suggestions

Every DNS query is logged. The app automatically surfaces suspicious behavior domains for easy blocking.

03

App Block — Per-App Control

The App Block screen is the centerpiece of TacU-NS Firewall's per-application control system. Every installed app on the device is listed with its name, icon, and current protection status.

Wi-Fi Control

Toggle Wi-Fi internet access independently for each app. When blocked, the app cannot use Wi-Fi to send or receive any data.

Example: Block a streaming app from consuming Wi-Fi bandwidth while at home.

Mobile Data Control

Independently block mobile data (cellular) for any app. Prevents unexpected mobile data charges.

Example: Prevent a social media app from using your data plan when off Wi-Fi.

Real-World Use Cases

  • Block Chrome from mobile data — reduce data bill; Chrome still works on Wi-Fi.
  • Block a gaming app from all internet — eliminate distractions or in-app purchases.
  • Block an unfamiliar newly-installed app from all network access until verified.
  • Block messaging apps from mobile data — force them to only sync when on Wi-Fi.
04

Live Logs & Threat Insights

Every network connection attempt made by any app on the device is captured, attributed, and displayed in the Logs screen in real-time.

Threat Insight Engine

Continuously analyzes behavior patterns in the background to automatically surface suspicious activity:

  • Beaconing Detection: Identifies apps that send network requests at suspiciously regular intervals (associated with tracking).
  • Post-Update Behavior Change: Monitors sudden spikes in DNS queries following an app update.
  • Query Rate Anomaly: Compares each app's current DNS activity against its own 7-day historical baseline.
05

Network Map & Geo Intelligence

The Map screen provides a live, visual representation of the global destinations that DNS queries from the device are resolving to. Uses an offline IP geolocation database.

Geo-Level Domain Blocking

Block all internet domains from specific countries by their top-level domain (TLD). Blocks apply device-wide across all apps.

  • Instantly reversible.
  • Stored as standard domain rules.
  • Geolocation is performed entirely on-device (no external query).
06

Rules & Scheduling

The Rules screen is the manual control center for domain-level firewall rules. Domains can be blocked directly, applying to all subdomains as well.

Scheduled Protection

Define time windows during which entire categories of websites are automatically blocked.

  • Category-Based Blocking: Social Media, Entertainment, Gaming, Shopping, etc.
  • Custom Time Windows: Precise start/end times (can span midnight).
  • Day-of-Week Selection: Weekdays, weekends, or custom days.
  • Automatic Enforcement: Rules apply and remove themselves cleanly based on the schedule without manual intervention.
07

Dashboard & UI Experience

Dashboard

Central control hub. VPN status, daily stats, real-time blocked count.

App Block

List of installed apps with individual Wi-Fi and Mobile Data toggles.

Rules

Manual domain block list management. View blocklist sources.

Map & Logs

Live global DNS map and real-time feed of every DNS query.

08

Security & Privacy

Designed from the ground up with user privacy as the primary constraint.

Fully On-Device Processing: All firewall decisions, DNS filtering, log storage, and geolocation lookups happen entirely on the device.
No Account Required: No user registration, no email address, no cloud account, and no subscription credentials.
No Data Monetization: TacU does not sell, share, broker, or monetize any user data. No advertising or analytics SDKs.
Local-Only Log Storage: Connection logs are stored only on the device. They are never uploaded or shared.
09

Performance & Stability

Engineered to run continuously across days and weeks without impacting device performance.

  • Zero Packet Processing CPU LoadOnly DNS-layer interception is performed, keeping CPU usage extremely low.
  • Minimal Memory FootprintCompact, efficient in-memory structures for massive domain rule sets.
  • No Battery ImpactVPN runs as a foreground service with no polling or busy-waiting to conserve power.
  • Crash IsolationVPN service runs in a completely separate process from the UI, ensuring constant protection.
10

Future Roadmap

Near Term

  • AI-Powered Threat Classification
  • Advanced DNS Filtering Modes (Encrypted DNS)
  • Enhanced Scheduling Engine

Mid Term

  • Family & Device Group Management
  • Cross-Device Rule Sync
  • Enterprise Profile Support

Long Term

  • Behavioral Baseline Intelligence
  • Threat Intelligence Feed Integration
  • Privacy Score Dashboard

TacU-NS Firewall — Confidential Product Guide

For authorized use only. Not for public distribution without express written consent.

© 2026 TacU. All rights reserved.

For business inquiries, licensing, or enterprise deployment information: www.tacuns.net