Users often assume every major public DNS includes some form of blocking. Cloudflare’s standard resolver does not work that way.
Provider comparison
| DNS | Provider | Privacy | Speed |
|---|---|---|---|
| 1.1.1.1 | Cloudflare | High | Very Fast |
| 1.1.1.2 | Cloudflare Malware | High | Fast |
| 1.1.1.3 | Cloudflare Family | High | Fast |
| 9.9.9.9 | Quad9 | High | Fast |
Detailed explanation
Standard 1.1.1.1 is positioned as a fast, privacy-conscious resolver. If you need DNS-level enforcement, Cloudflare directs users to its filtered variants instead of changing the behavior of the default resolver.
That distinction matters when diagnosing blocked sites. If content is failing to resolve, the cause could be a family-safe resolver, local network policy, or a security product rather than 1.1.1.1 itself. For diagnosis, go to how to check if DNS is blocked. For the family-filtering variant, read what 1.1.1.3 DNS is.

