General • August 13, 2026

Understanding the Network Diagnostic Tool: Privacy-First Speed Testing

What is the Network Diagnostic Tool?

The Network Diagnostic tool is a 100% browser-based utility that measures your internet connection quality in real-time. It tests download speed, upload speed, ping latency, jitter, and various advanced metrics—all without sending your results to any server or database.

Unlike traditional speed test websites that build detailed profiles of your browsing habits, ZeroServerTools.org uses a privacy-first architecture that respects your data and guarantees zero tracking.

How It Works: Three Layers of Privacy

1. Your Browser (Calculation Layer)

Zero Data Saved: Your server only serves the static HTML, CSS, PHP layout, and JavaScript to the browser. The moment the diagnostic runs, all processing happens inside your computer.

No Database Logging: All calculations (download/upload speed, ping, jitter, resource timings) happen strictly inside the user's browser memory (RAM). The results are never sent back to or saved on your VPS.

IP Address Handling: The PHP script reads the incoming IP header (HTTP_CF_CONNECTING_IP) solely to display it as text in the HTML DOM. It is never logged to a database or stored on disk by your application code.

2. Cloudflare's Infrastructure (Testing Layer)

When your browser streams data to or from Cloudflare's edge endpoints during the speed test, several privacy protections are in place:

Uploaded Payloads are Discarded Instantly: The dummy binary bytes sent during the upload test (__up) are processed entirely in server memory and dropped into the void (/dev/null). Cloudflare does not store or inspect the uploaded file data.

IP Anonymization: Cloudflare receives the connection IP address to route traffic to the nearest data center. For network quality analytics (like Cloudflare Radar), Cloudflare truncates IP addresses (to /24 for IPv4 and /48 for IPv6) to remove personal identification before storing aggregated metrics.

No Ad-Tracking or Profiling: Traditional speed test platforms often track device advertising IDs, precise GPS coordinates, and browsing profiles for targeted marketing. Cloudflare does not build ad profiles or sell individual user data.

3. Your Device (Measurement Layer)

The Network Diagnostic tool uses the browser's native APIs and open standards to measure network performance:

  • Download Speed: Uses fetch() with ReadableStream to measure real data throughput from Cloudflare's CDN
  • Upload Speed: Uses XMLHttpRequest (XHR) to measure data transmission to Cloudflare's test endpoint
  • Ping/Latency: Measures round-trip time to JSONPlaceholder (a public testing API) using fetch timing
  • Jitter: Calculates variance between consecutive ping measurements
  • Resource Timings: Uses the Performance API to measure DNS, TCP, TLS, and TTFB metrics
  • WebRTC Diagnostics: Analyzes your NAT type and local IP configuration using RTCPeerConnection

What Gets Measured?

General Tab Metrics

  • Public IP (fetched from ipify API)
  • Connection Type (4G, WiFi, etc.)
  • Online/Offline Status
  • Download Speed
  • Upload Speed
  • Browser Type
  • Operating System
  • Screen Resolution

Gamer Tab Metrics

  • Real-Time Ping
  • Real-Time Jitter
  • Packet Loss Estimate
  • Bufferbloat Grade (A+, C, F)
  • Real-Time Download/Upload Speeds
  • NAT Traversal Type

Advanced Tab Metrics

  • DNS Lookup Time
  • TCP Handshake Duration
  • TLS/SSL Negotiation Time
  • Time to First Byte (TTFB)
  • ICE Topology Analysis
  • DTLS/SRTP Cipher Suite
  • Active Transport Protocol
  • ALPN Protocol Detection
  • HTTP/3 QUIC State
  • Effective Bandwidth
  • Estimated MTU & TCP Retransmission Rates

Why Use This Over Other Speed Tests?

Feature Network Diagnostic Traditional Speed Tests
Data Storage Zero storage on your server Results saved to their database
Tracking No tracking or profiling Device fingerprinting, ad tracking
IP Logging Display only (not logged) Full IP stored for analytics
Browser Processing 100% client-side calculations Sent to server for analysis
Speed Test Endpoints Cloudflare's official CDN Company-owned infrastructure (bias)
Cost Free, no ads Free, ad-supported

How to Interpret the Results

Download Speed

Measured in Mbps (megabits per second). This is the speed at which data flows from the internet to your device.

  • < 5 Mbps: Suitable for email, browsing, light streaming
  • 5-25 Mbps: Good for streaming HD video, video calls
  • 25-100 Mbps: Excellent for 4K streaming, gaming, multiple users
  • > 100 Mbps: Premium for professional work, large file transfers

Upload Speed

Measured in Mbps. Upload speed is critical for video conferencing, cloud backup, and content creation.

  • < 1 Mbps: Struggles with video calls and uploads
  • 1-5 Mbps: Good for video conferencing and small uploads
  • 5-20 Mbps: Suitable for streaming, large uploads, remote work
  • > 20 Mbps: Ideal for content creators and professionals

Ping (Latency)

Measured in milliseconds (ms). Lower is better.

  • < 20 ms: Excellent for gaming and real-time applications
  • 20-50 ms: Good for most online activities
  • 50-100 ms: Acceptable, but may notice lag in gaming
  • > 100 ms: Significant delay, poor for gaming and video calls

Jitter

Variance in ping measurements. Lower is better.

  • < 5 ms: Excellent stability
  • 5-20 ms: Good (normal for most connections)
  • > 20 ms: Unstable connection, may affect real-time applications

Bufferbloat Grade

How your router handles congestion under load.

  • A+: No noticeable latency increase under load
  • C: Moderate lag increase when network is saturated
  • F: Severe lag spikes (router buffer is poorly configured)

Privacy Architecture in Detail

Data Flow Diagram

[Your Browser]
    ↓ (1. JavaScript runs locally, no data leaves)
[Browser RAM - All Calculations]
    ↓ (2. Only test traffic sent)
[Cloudflare's CDN Edge Nodes]
    ↓ (3. Anonymized, truncated IP)
[Cloudflare Analytics (if enabled)]
    
[Your VPS/Server]
    ↑
    └─ Never receives test results or calculations
       Only serves initial page + static assets

What Your VPS Logs

  • Page view (standard web server log)
  • HTTP request for the tool page
  • NOT the test results
  • NOT calculated speeds or metrics
  • NOT timestamps of when tests run

What Cloudflare Logs (if at all)

  • Anonymized connection metrics (truncated IP to /24)
  • Aggregated network statistics for Cloudflare Radar
  • NOT your full IP address
  • NOT uploaded test payloads
  • NOT any identifiable information

Frequently Asked Questions

Q: Is my IP address really not logged?

A: Correct. Your VPS only displays your IP in the browser (via ipify API). It's never written to disk or database. Cloudflare may see your IP for routing, but it's immediately truncated to a /24 block for analytics, making it impossible to identify individual users.

Q: Can you see my test results on the server?

A: No. All calculations happen in your browser's memory. Even if someone gained access to your VPS, there would be no record of any speed test results.

Q: Why use Cloudflare's endpoints instead of your own server?

A: Using your own server for speed tests would send all test data through your VPS, consuming bandwidth and creating server-side logs. Cloudflare's official test endpoints are designed for this purpose, maintain zero storage policies, and provide more accurate results by testing to the nearest edge node.

Q: Is the tool accurate?

A: The tool measures real-time throughput based on actual data transfers. Accuracy depends on:

  • Your network stability at the time of test
  • Background processes consuming bandwidth
  • Distance to the nearest Cloudflare edge node

For the most accurate results, close other applications and run the test multiple times.

Q: Can I self-host this tool on my own server?

A: Yes! The Network Diagnostic tool is entirely open-source and client-side. You can deploy it on any web server. The privacy guarantees remain the same as long as you don't modify the JavaScript to send results to a backend server.

Advanced: Understanding WebRTC Diagnostics

The Advanced tab's WebRTC section analyzes your network configuration:

  • ICE Topology: Shows whether your connection is direct (Host), reflexive (STUN), or relay-based (TURN). This indicates your NAT configuration.
  • DTLS/SRTP Cipher: The encryption method used for secure connections. Modern browsers support TLS_AES_128_GCM or stronger.
  • ALPN Protocol: Application-Layer Protocol Negotiation determines whether your connection uses HTTP/1.1, HTTP/2, or HTTP/3 (QUIC).
  • HTTP/3 QUIC State: Shows if your connection supports the newer, faster QUIC protocol for UDP-based transport.

Best Practices for Accurate Testing

  1. Close Background Apps: Stop downloads, streaming, and heavy applications before testing
  2. Use Wired Connection (if possible): Ethernet provides more stable results than WiFi
  3. Run Multiple Tests: Network performance fluctuates; take an average of 2-3 runs
  4. Test at Different Times: Your ISP's performance may vary by time of day
  5. Check Nearest CDN Node: Results vary by geographical proximity to Cloudflare's edge locations

Conclusion

The Network Diagnostic tool proves that comprehensive, accurate network testing doesn't require invasive data collection. By leveraging your browser's native capabilities and Cloudflare's privacy-respecting infrastructure, you get professional-grade metrics without compromising your privacy.

Your internet speed is your business. Keep it that way.

← Back to Blog