App Overview
What is TacU-NS Firewall?
TacU-NS Firewall is a powerful, no-root Android security application that gives users complete control over their device's internet connections. Operating entirely on-device, it provides enterprise-grade firewall capabilities directly in the hands of everyday users — without requiring system-level access or technical expertise.
Designed for privacy-conscious individuals, professionals, and families, TacU-NS Firewall delivers the kind of network protection that was previously available only on corporate IT infrastructures — now fully accessible from a single Android device.
The Problems It Solves
Invisible Data Leaks
Many apps silently send data to advertisers, trackers, and third-party servers without your knowledge. TacU-NS Firewall makes every connection visible and controllable.
Unrestricted App Access
Every installed app — including system apps — can freely use Wi-Fi and mobile data by default. TacU-NS Firewall gives you the power to revoke that access per app, per network type.
Malware & Phishing Domains
Malicious websites, phishing attempts, and known malware domains can be blocked at the network level before a single byte reaches your device.
Background Traffic Control
Apps constantly send background requests. Manage this and enforce screen time discipline with automated scheduling rules by time, day, and category.
Core Features
Each feature is designed to work independently or in combination, giving users layered security coverage.
No-Root Firewall Protection
Full firewall capability without requiring root access or device modification. Works out of the box on any compatible Android device.
On-Device DNS Shield
Intercepts and filters DNS queries entirely on your device. Blocked requests never leave your phone.
Per-App Internet Control
Block or allow internet access for any installed app individually (Wi-Fi, Mobile Data, or both).
Domain & Geo-Level Blocking
Block specific domains or entire Top-Level Domains (TLDs) from specific countries.
Community Blocklists
Subscribe to curated, regularly updated blocklists with tens of thousands of known ad-serving, tracking, and malware domains.
Scheduled Protection
Define time-based firewall rules. Automatically block categories during specified hours and days.
Real-Time Logs & Smart Suggestions
Every DNS query is logged. The app automatically surfaces suspicious behavior domains for easy blocking.
App Block — Per-App Control
The App Block screen is the centerpiece of TacU-NS Firewall's per-application control system. Every installed app on the device is listed with its name, icon, and current protection status.
Wi-Fi Control
Toggle Wi-Fi internet access independently for each app. When blocked, the app cannot use Wi-Fi to send or receive any data.
Example: Block a streaming app from consuming Wi-Fi bandwidth while at home.
Mobile Data Control
Independently block mobile data (cellular) for any app. Prevents unexpected mobile data charges.
Example: Prevent a social media app from using your data plan when off Wi-Fi.
Real-World Use Cases
- Block Chrome from mobile data — reduce data bill; Chrome still works on Wi-Fi.
- Block a gaming app from all internet — eliminate distractions or in-app purchases.
- Block an unfamiliar newly-installed app from all network access until verified.
- Block messaging apps from mobile data — force them to only sync when on Wi-Fi.
Live Logs & Threat Insights
Every network connection attempt made by any app on the device is captured, attributed, and displayed in the Logs screen in real-time.
Threat Insight Engine
Continuously analyzes behavior patterns in the background to automatically surface suspicious activity:
- Beaconing Detection: Identifies apps that send network requests at suspiciously regular intervals (associated with tracking).
- Post-Update Behavior Change: Monitors sudden spikes in DNS queries following an app update.
- Query Rate Anomaly: Compares each app's current DNS activity against its own 7-day historical baseline.
Network Map & Geo Intelligence
The Map screen provides a live, visual representation of the global destinations that DNS queries from the device are resolving to. Uses an offline IP geolocation database.
Geo-Level Domain Blocking
Block all internet domains from specific countries by their top-level domain (TLD). Blocks apply device-wide across all apps.
- Instantly reversible.
- Stored as standard domain rules.
- Geolocation is performed entirely on-device (no external query).
Rules & Scheduling
The Rules screen is the manual control center for domain-level firewall rules. Domains can be blocked directly, applying to all subdomains as well.
Scheduled Protection
Define time windows during which entire categories of websites are automatically blocked.
- Category-Based Blocking: Social Media, Entertainment, Gaming, Shopping, etc.
- Custom Time Windows: Precise start/end times (can span midnight).
- Day-of-Week Selection: Weekdays, weekends, or custom days.
- Automatic Enforcement: Rules apply and remove themselves cleanly based on the schedule without manual intervention.
Dashboard & UI Experience
Dashboard
Central control hub. VPN status, daily stats, real-time blocked count.
App Block
List of installed apps with individual Wi-Fi and Mobile Data toggles.
Rules
Manual domain block list management. View blocklist sources.
Map & Logs
Live global DNS map and real-time feed of every DNS query.
Security & Privacy
Designed from the ground up with user privacy as the primary constraint.
Performance & Stability
Engineered to run continuously across days and weeks without impacting device performance.
- Zero Packet Processing CPU LoadOnly DNS-layer interception is performed, keeping CPU usage extremely low.
- Minimal Memory FootprintCompact, efficient in-memory structures for massive domain rule sets.
- No Battery ImpactVPN runs as a foreground service with no polling or busy-waiting to conserve power.
- Crash IsolationVPN service runs in a completely separate process from the UI, ensuring constant protection.
Future Roadmap
Near Term
- AI-Powered Threat Classification
- Advanced DNS Filtering Modes (Encrypted DNS)
- Enhanced Scheduling Engine
Mid Term
- Family & Device Group Management
- Cross-Device Rule Sync
- Enterprise Profile Support
Long Term
- Behavioral Baseline Intelligence
- Threat Intelligence Feed Integration
- Privacy Score Dashboard
TacU-NS Firewall — Confidential Product Guide
For authorized use only. Not for public distribution without express written consent.
© 2026 TacU. All rights reserved.
For business inquiries, licensing, or enterprise deployment information: www.tacuns.net