For iPhone & iPad · iOS 26 · Open source
Blocks ads everywhere.
Sees nothing.
Phosphor filters ads, trackers, malware and adult content across Safari and every app on iOS 26. It runs on Apple's Private Information Retrieval, so the URLs you visit stay encrypted — even from us.
7-day free trial · then $12.99/year or $1.99/month · cancel anytime
What it blocks
Four lists. Every app on the phone.
Filtering happens at the system level, so it covers Safari, in-app browsers and any app that uses URLSession — not just one browser. Add your own hosts-format lists, or block and allow single domains by hand.
Remove ads across Safari and every app on your device.
Prevent cross-site tracking and fingerprinting.
Protection from known malicious domains.
Block adult and explicit content domains.
How it works
Most URLs never leave your phone.
A request is checked in four stages. Only the rare potential match goes to the network — and it goes encrypted, through a relay that hides who asked.
A compact bit array instantly checks if a URL might be blocked. ~99.9% of URLs are cleared here with zero network traffic.
For a possible match, the system sends a homomorphically encrypted query. The server answers it without ever decrypting it.
Queries route through Apple's Oblivious HTTP relay. Your IP is hidden from our server; the query is hidden from Apple. Neither sees both.
The encrypted response is decrypted on your device. The app never learns which URL was checked.
Privacy
Nobody sees both.
This is not a policy promise — it is how the pieces are arranged. Each party in the chain holds one half of the picture and cannot get the other.
- SEES
- The URL, the Bloom filter, the decryption key
- NEVER
- Sends anything home. There is no telemetry to send.
- SEES
- Your IP address and an opaque encrypted blob
- NEVER
- What is inside the query — Oblivious HTTP strips it of meaning.
- SEES
- A homomorphically encrypted query it computes on blind
- NEVER
- Your IP, the URL, or the answer. Logs hold timestamps and sizes only.
Aggregate block counts live only on your device, are not backed up to iCloud, and are deleted with the app.
Compared
System-wide, without a VPN.
Other blockers route your traffic through a DNS resolver or a VPN you have to trust. Phosphor uses the iOS 26 URL-filter API, so nothing is rerouted and no one is trusted with your history.
* NextDNS can use DNS-over-HTTPS without a VPN profile, but this doesn't cover all app traffic.
Pricing
One plan. Seven days free.
Filtering requires Phosphor Premium. The price funds the PIR server that answers encrypted queries — there are no ads or data to sell instead.
Without a subscription you can still browse and manage filter lists, read the privacy documentation and complete onboarding.
Or $12.99 a year — about 45% less.
Works out to about $1.08 a month, billed once a year.
- Block ads & trackers across all apps
- Malware & adult content filtering
- Zero-knowledge privacy — encrypted PIR queries
- Custom filter lists & manual entries
- A reminder 2 days before your free trial ends
Auto-renewing subscription billed by Apple. Payment is charged when the free trial ends. Renews unless cancelled at least 24 hours before the end of the current period. If it ends, filtering pauses until you subscribe again. Manage or cancel anytime in App Store settings. Terms · Privacy
Support
Questions
Not answered here? Email support@phosphor.online or open an issue on GitHub.
Support pageHow does Phosphor protect my privacy?
Phosphor uses Apple's Private Information Retrieval (PIR) with homomorphic encryption. URLs are checked locally on your device. For potential matches, encrypted queries go through Apple's relay. Neither the app, our server, nor Apple can see which URLs you visit.
Why does the filter show as "Invalid" or "Not Active"?
The URL filter requires Apple's OHTTP relay approval and a stable internet connection to our PIR server. If the filter shows as invalid, try: (1) Delete and reinstall the app, (2) Restart your device, (3) Check that you have an active subscription.
How do I cancel my subscription?
Go to Settings > [Your Name] > Subscriptions > Phosphor > Cancel Subscription. You'll continue to have access until the end of your billing period.
Does Phosphor work with all apps?
Phosphor filters URLs across Safari, in-app browsers (WebKit), and apps using URLSession. Some apps using custom networking stacks may not be filtered.
Read every line, then turn it on.
The app, the filter extension and the shared Bloom filter are MIT-licensed on GitHub. The architecture and threat model are written down. Nothing is hidden behind a marketing page — including this one.