Questions

Why does Windows or macOS warn me?

The builds are not code-signed or notarised yet. Windows signing through SignPath Foundation is applied for. The steps to open the app anyway are in the troubleshooting guide, and every file can be checked against the GPG-signed checksums of its release.

Is it free?

Yes: free and open source under the GNU AGPL-3.0, with no ads, no tracking and no account. Donations pay for code signing, hosting, the RIPE Atlas probe and maintenance time.

Where does a placement come from?

From the router's hostname first: CAIDA's Hoiho rules and carriers' own site codes. Only if the hostname says nothing does it fall back to an IP geolocation database (RIPEstat), and that answer must still pass the round-trip check. The Source column and the marker colour say which. See reading the result.

What does it send, and to whom?

Only what PRIVACY.md lists: public router hostnames to CAIDA Hoiho, public hop addresses to RIPEstat, reverse DNS queries to your own resolver, and, only if you have not set your location, your public IP to RIPEstat. Private and carrier-NAT addresses are never looked up. Each source can be switched off.

Can I map a traceroute someone else ran?

Yes: File > Paste Trace, and say where it was run from. Output of traceroute, tracert and mtr --report works.

Does it need administrator rights?

No. It runs your system's own trace tool as you.

Is there a command line?

Yes, on every platform: see the command-line reference.

Does the project site track me?

No. getroutemap.app sets no cookies and runs no scripts for tracking or analytics; the web server keeps a standard access log.