Wirefeed

A native WireGuard tunnel manager for Windows.

Loading...

What it does

  • Real Windows VPN profiles

    Tunnels register with the Windows VPN platform, so they show up in Settings and the network flyout. Windows owns routing, DNS and IPv6. No kernel driver, no bundled service.

  • Userspace WireGuard

    Encryption runs in an isolated AppContainer plugin built on BoringTun. Nothing touches the kernel, and configs are stored encrypted per-user with DPAPI.

  • Import anything

    Drop in a wg-quick .conf, a .zip full of them, or a Wirefeed bundle. Or fill in the guided form, which derives your public key and validates as you type.

  • Metrics that mean something

    Live throughput graphs plus latency, packet loss and handshake age, colour-coded so you can tell "connected" from "actually working" at a glance.

  • Split tunneling

    Send everything through the tunnel, or pick the apps that should use it. Works with both Store apps and plain .exe files.

  • Wake-on-LAN over the tunnel

    Save the machines on the far end and wake them remotely. Wirefeed notices when a target is only reachable across the tunnel and offers to connect first.

  • One-click diagnosis

    Checks your config, resolves the endpoint, probes reachability and reads the live handshake, then explains what is wrong in plain language.

  • Lives in your tray

    An acrylic flyout with status, live rates and quick-connect, a keyboard shortcut to summon it, and a real window when you want the details.

  • Encrypted backups

    Export every tunnel, label, icon and wake target to a single .wirefeed file, optionally sealed with AES-256-GCM. Imports never overwrite what you already have.

Windows 11 and Windows 10 (x64)Ships as an MSIX package and keeps itself updated. macOS and mobile are planned.
Read the guidesGetting set up, and getting the most out of it.