You may want to update this answer with The truth that TLS 1.3 encrypts the SNI extension, and the most significant CDN is undertaking just that: blog.cloudflare.com/encrypted-sni Naturally a packet sniffer could just do a reverse-dns lookup with the IP addresses you might be connecting to. This will modify in https://chiefg110lxi3.wikiconverse.com/user