Free & open source — forever

Keep your family safe on your own home network.

Lantern Watch is a plug-in guardian for your home internet. Content filtering, parental controls, and screen-time limits — running entirely on your own router. Free and open-source with no cloud account: filtering combines community blocklists on your router with trusted public DNS (Cloudflare, Quad9), and we run zero servers that see or log your browsing.

100% free for all — forever
Lantern Watch logo
Runs on your router
No cloud surveillance
No subscription
Fully open source
Works in parallel with

Lantern Watch runs on affordable GL.iNet routers and pairs with AdGuard Home as its DNS filtering engine — adding per-device schedules, a parent-friendly dashboard, and private alerts on top of open-source tools trusted worldwide.

What it does

Protection that lives in your home

Everything runs locally on a small router you own. Your logs and dashboard stay there — Lantern Watch has no servers to send them to.

Content filtering

Blocks adult content, malware, and trackers at the DNS level for every device on the network — no app to install on each phone.

Help, not just a wall

A blocked site doesn't end at "no." The block page — and every content alert — points to a curated page of recovery and support resources, because part of the mission is helping those who are struggling find a way out.

Screen time & schedules

Set bedtimes, focus hours, and daily limits. Pause the internet for any device with one tap when it's time for dinner.

Per-device control

See every device on your network and manage each one individually — kids' tablets, the family TV, guest phones.

Gentle alerts

Optional notifications to a parent's phone when something needs attention — delivered privately, never to a public feed.

Private by design

No accounts, no logins, no data harvesting. Lantern Watch has no servers that see your activity — the only things it sends out are an anonymous install count and a check for updates.

Open & auditable

Every line of code is public on GitHub. Anyone can inspect exactly what it does — and improve it. Nothing hidden.

How it works

Up and running in minutes

A small router sits in front of your home network. Plug it in, and every device is protected automatically.

1

Plug it in

Connect a Lantern Watch router between your internet and your existing network. No rewiring, no technical setup.

2

Set your rules

A simple first-run wizard walks you through your password, filtering level, and schedules — in plain language.

3

Everyone's protected

Every device on your network is now filtered and managed from one friendly dashboard. That's it.

Demo

See it in action

A full walkthrough, a network-monitoring overview, and a Lite install on the travel-sized Beryl 7.

Watch the demo Full walkthrough — dashboard, controls & setup
Watch the overview Network monitoring overview
Watch the Lite install Step-by-step on the travel-sized Beryl 7
Supported routers

Hardware that's ready to go

Lantern Watch runs on GL.iNet routers — compact, affordable, and OpenWrt-based. We highly recommend 1 GB+ RAM (Flint 2 or Brume 3) for the full on-device filtering experience; 512 MB travel routers like the Beryl 7 run a lighter Lite profile — every parental feature, with adult/malware filtering handled by a fast DNS upstream to stay light. (Amazon links help support the project at no extra cost to you.)

✈️ Travel / Apartment

Beryl 7 (GL-MT3600BE)

Ultra-portable · Lite profile

Compact travel router with excellent performance. Great when portability matters — travel, RVs, apartments, or anyone who wants something ultra-portable.

  • Wi-Fi Wi-Fi 7 · 2882/688 Mbps
  • CPU MediaTek Quad-Core · 2.0 GHz
  • RAM 512 MB DDR4
  • Storage 512 MB NAND
  • Ethernet 2×2.5G
View on Amazon
🏢 Business

Brume 3 (GL-MT5000)

Wired-only · sits in front of your network

For businesses that already have commercial Wi-Fi or firewall equipment and want Lantern Watch on a dedicated appliance.

  • Wi-Fi None (wired router)
  • CPU MediaTek Quad-Core · 2.0 GHz
  • RAM 1 GB DDR4
  • Storage 8 GB eMMC
  • Ethernet 1×2.5G + 2×1G
View on Amazon

Already have a GL.iNet or OpenWrt router? Install Lantern Watch yourself — it's free and open source.

Install from GitHub
Get started

Install in a few minutes

On a supported GL.iNet router you install Lantern Watch right from the router's own admin panel — no command line, and AdGuard turns itself on.

1

Add the source

In the GL.iNet panel: Applications → Plug-ins → Manage Sources. Add
Name lanternwatch
URL https://lanternwatch.org/repo
then Apply.

2

Install it

Click Refresh, search lanternwatch, and click Install. Give it about two minutes.

3

Set your password

Open http://192.168.8.1:8081 and choose a password. That's it — protection is already on.

Prefer SSH or installing from source? Full instructions are on GitHub.

Install guide on GitHub
Performance & Efficiency

Light enough to run 24/7 on affordable hardware

Lantern Watch is built to run around the clock without expensive equipment. Even while filtering, logging, and watching over every device, it uses only a small slice of your router — leaving plenty of room for what's next.

Tested in the real world

Days of non-stop running and hundreds of thousands of DNS lookups — barely a footprint.

Lantern Watch sizes itself to your router. On a 1 GB router it runs the full local blocklists in about 85 MB of RAM at under 2% processor use. On a 512 MB travel router it switches to a Lite profile — moving adult & malware filtering to a fast Cloudflare for Families DNS upstream so AdGuard Home stays tiny (~36 MB) and the router keeps roughly 100 MB free. No crashes, responsive DNS, room to spare either way.

~1–2%
Processor
Nearly all your router's power stays free for everything else on the network.
~85 MB
Full profile · 1 GB router
The complete local blocklists (~300K rules) run in about 85 MB — loads of headroom to grow.
~36 MB
Lite profile · 512 MB router
Filtering moves to a Cloudflare for Families DNS upstream, so AdGuard stays ~36 MB and ~100 MB of RAM stays free.
~20 MB
Two weeks of logs
A typical family's DNS history for two weeks, in a small, tidy database — you choose how long to keep it.

Efficient

Uses minimal processor and memory, so your router stays fast and responsive for everyone.

Always on

Designed to run continuously, 24/7, with a tiny and steady resource footprint.

Room to grow

Comfortable today, with headroom for larger blocklists, more devices, and future Lantern Watch features.

Affordable hardware

No enterprise gear required — it runs beautifully on recommended GL.iNet routers under $200 CAD.

Built in the open

Lantern Watch is 100% open source under the MIT license. Inspect it, run it, improve it. Developers and testers are warmly welcome.

Get in touch

Questions or feedback?

Lantern Watch is free and open source — no access request needed. Just install it (or grab it on GitHub). Got a question, an idea, or hit a snag? Drop us a note.

Lantern Watch

Help put a lantern in another home

Lantern Watch is free for everyone — families, churches, camps, and organizations — forever. No subscriptions, no licenses, no catch. If it's protecting your family, consider leaving a tip to help put a router in a home that can't afford one. 100% of tips go toward putting fully-loaded routers into homes that need them and supporting continued development.

☕ Buy me a coffee

No pressure — the software stays free either way.

Credit where it's due

Built on great open source

Lantern Watch is built on top of AdGuard Home, which handles the actual DNS blocking. Lantern Watch adds the parental-control layer on top — schedules, screen time, dashboards, and alerts — and runs on GL.iNet hardware.

AdGuard Home

The DNS filtering engine under the hood.

GL.iNet

The OpenWrt routers Lantern Watch runs on.