Do you work with MSPs and partners?
Yes. Loxada works with managed service providers who deploy and manage it across their client base. See our MSP page, or get in touch to discuss the partner program.
Do you ship internationally?
In many cases, yes, but it depends on the destination. Some countries restrict connection devices that route traffic out of the country, so international deployments need a quick conversation first. Contact us with where you need to operate and we will confirm what is possible.
What happens if a device fails?
If a device fails, we ship a replacement for next-working-day delivery to the customer’s location. Swapping the device is usually quicker than troubleshooting it in place, so that is our default. Delivery is to your designated location; onward delivery to a travelling user is arranged by you.
What support is included?
Loxada’s core system, including our servers and infrastructure, is monitored and maintained around the clock. Support for individual devices is handled during business hours. We work alongside your own IT support rather than replacing it: because we are not party to your internal processes or your users, we are not set up to act as first-line support for end-user queries, so those are best handled by your team. To help with that, the setup page has detailed guidance for end users, and you can check live system status at status.loxada.com.
Can we trial Loxada before committing?
We can sometimes arrange a small trial with a limited set of users. Contact us to talk through what you are trying to validate and we will see what we can do.
Is there a minimum order?
Our standard minimum order is 10 devices. If you need fewer, get in touch and we will do our best to find a way to work with you.
How is Loxada priced?
Pricing is a one-off device fee plus a monthly per-user subscription. Full detail is on our pricing page, and there is a calculator if you want to model a specific team size.
I can only see a network called LoxadaSetup
Your device has been factory reset and needs setting up again. Follow the setup instructions your company provided, or see our setup videos. If you do not have the details, your IT support team can supply them.
The network name has changed and I can't connect
Try the password you used with the previous network name. If it is not recognized, contact your IT support team to check whether the details have been updated.
There are no lights on my Loxada device
Check the power lead is connected and the socket has not been switched off. Try a different socket. If it still will not power on, contact your IT support team, who can arrange a replacement.
I'm connected but can't reach my work files or systems
First check whether your Loxada device has internet access at https://check.loxada.io/. If it does not, see the previous answer.
If you can reach other websites but not your work systems, or the check page reports that your connection to Loxada is not established, contact your company’s IT support team to confirm your access permissions.
I'm connected to my Loxada network but have no internet
This is usually one of two things: either your Loxada device is not properly connected to your internet source, or that internet source is not working itself.
To check, go to https://check.loxada.io/. If the page does not load, work through the steps below. If it does, follow the on-screen instructions.
- If you are connecting your Loxada device by cable, check the cables are in the correct ports at both ends.
- If you are connecting over Wi-Fi, check the network name and password for the network you are joining.
- Check that the connection itself is working, using another device connected to it directly.
If it still will not connect, contact your IT support team.
I can see my work Loxada network but can't connect to it
Check your password is entered correctly. If it is not recognized, contact your company’s IT support team to confirm you have the current one.
I can't see the Loxada setup page
Check that you are connected to the Wi-Fi network called LoxadaSetup.
If you are, check the setup address is typed correctly. Note there is no “s” at the end of “http”:
http://loxada/setup
or
http://192.168.99.1
What happens after March 2027?
The position is genuinely unresolved. The current waiver covering firmware and security updates to authorized devices runs until at least March 1, 2027, and the longer-term framework has not been settled. We are following it closely and will tell customers about anything material well ahead of time.
Can Loxada supply devices from a different manufacturer or country of origin?
Yes. Loxada supplies its own secure routers, and where a client has a particular requirement, on specific hardware, country of manufacture or form factor, we can source and secure devices beyond our core range to meet it. We are not tied to a single manufacturer, so if regulation or your own procurement policy requires a change, we can accommodate it without changing the firmware and service layer you rely on.
Our devices were manufactured in Asia. Are we still exposed to the risks the ruling was about?
The determination was concerned with manufacturer firmware, supply chain provenance, and persistent access through compromised router software.
Every Loxada device runs Loxada’s secure firmware in place of the manufacturer’s build. The device does not receive updates from the manufacturer and does not communicate with manufacturer infrastructure. Updates come from us, are securely delivered, and are applied automatically.
We would not claim this removes every element of geopolitical supply chain risk, because the hardware itself is still manufactured in Asia. What it does is remove the dependence on a manufacturer’s code and update practices, which is the substance of what the determination was about.
Does the FCC's March 2026 router ruling affect Loxada devices?
Not in a way that disrupts current deployments. All Loxada devices in use received FCC equipment authorization before the March 2026 ruling took effect, and previously authorized hardware is unaffected: it can continue to be sold and used, and firmware and security updates are permitted under the waiver in place until at least March 1, 2027.
The ruling blocks new foreign-made consumer-grade router models from receiving authorization going forward. It does not affect models already authorized.
Does Loxada help with Cyber Essentials?
Yes, where the network devices your users rely on to connect remotely fall within your Cyber Essentials scope. Firmware currency and secure configuration are both Cyber Essentials requirements, and on Loxada devices they are handled centrally rather than left to individual users. So when a remote worker’s connecting device is in scope, Loxada keeps it current and correctly configured on your behalf.
Does Loxada support NIS2 compliance?
In part. NIS2’s cybersecurity risk-management measures (Article 21) require covered entities to put appropriate technical controls around network security, secured communications and access control, the same layer Loxada addresses. For remote and home-working staff, Loxada secures the connection from the worker’s private network and turns their home network, an otherwise uncontrolled dependency, into a defined ICT service that can be recorded and governed.
Does Loxada support DORA compliance?
In part. DORA’s technical standards for ICT risk management call for firms to secure connections made over domestic networks and to put controls around teleworking and private endpoint devices, precisely the layer Loxada addresses. For staff working from home, Loxada secures the link from the worker’s private network and converts that home network, normally an uncontractable dependency, into a defined ICT service that can be documented and governed alongside your other ICT services.
Does Loxada help with GDPR?
GDPR requires appropriate technical measures around access to personal data. Securing the network that access happens over is one such measure, and a documentable one.
Does Loxada help with HIPAA?
It supports the technical safeguards around access to protected health information, by securing the network staff connect from and keeping work devices separated from everything else on a local network. It is one control within a Security Rule program, not a compliance solution. See our HIPAA page.
Does Loxada help with PCI DSS?
Yes, specifically with network segmentation. Hardware-enforced separation keeps devices handling cardholder data isolated from everything else on a local network, which is a consistent, documentable control across every location.
Note: Whether that reduces your assessed scope is your QSA’s determination. See our PCI DSS segmentation page.
Does Loxada support DORA compliance?
It supports part of it. DORA’s technical standards address the security of connections made over domestic networks and the security measures around teleworking and private endpoint devices, which is precisely the layer Loxada addresses. Loxada also converts an uncontractable dependency, a staff member’s home network, into a defined ICT service that can be recorded and governed.
What can Loxada evidence for an auditor or assessor?
Deployment coverage and configuration assurance, as above: a documented, consistent control at the network edge, with records of what is deployed and how it is configured, plus monthly security reports.
That is usually the gap in a remote working control set, because it is the one thing most organizations can describe as a policy but not evidence as a control.
Does Loxada provide monitoring, logging or threat detection?
No. Loxada is a preventive control. What it evidences is deployment coverage and configuration assurance: which devices are deployed, who holds them, whether they are connected, what firmware they are running, and that traffic is encrypted by design. Deployment is fully auditable, with monthly security reports.
Central logging of user activity, anomaly detection, threat detection and incident containment sit with your SIEM, your endpoint tooling and your security team. Loxada secures the network layer beneath them.
Will Loxada slow down our internet connection?
There is a small overhead from encryption and routing, as there is with any encrypted connection. In practice most users do not notice it. If performance is a particular concern for your use case, raise it with us and we will talk it through.
What data does Loxada hold about an individual user?
Which device is assigned to them, whether it is connected, and what firmware version it is running. Not what they do with it.
Does Loxada track what our users do online?
No. We do not monitor or record individual browsing activity. We record the volume of data passing through each device for reporting purposes, and blocked requests are not recorded against individual users.
Does Loxada work with Microsoft 365, Google Workspace and our identity provider?
Yes. Loxada operates at the network layer and does not change how your applications or identity systems work. Staff sign in exactly as they do now.
Can we use Loxada in hotels, coffee shops, coworking spaces and shared offices?
Yes. These are the environments it was built for: places where you need to work but cannot verify the network. It makes no difference whether the underlying connection is a hotel’s Wi-Fi, a coworking provider’s shared infrastructure, or a private office in a multi-tenant building.
Does Loxada work with printers, cameras, point-of-sale terminals and other equipment?
Yes. Any device connected to the Loxada network is covered, including peripherals, CCTV systems and POS terminals. Separating payment or camera systems from general-purpose devices is a common reason for deploying it.
Does Loxada work with mobile phones, tablets and BYOD devices?
Yes. Anything that connects to a Loxada network is protected by it, with no software to install on the device. That makes it particularly useful for BYOD, where you may have little control over the device itself.
We have locked down all our devices. Why do we need Loxada?
Device hardening is worth doing, and the network the device connects to remains outside it. Loxada secures that layer.
We use secure browsers. Why do we need Loxada?
A secure browser protects what happens inside it. It does not protect other traffic from the device, other devices on the same network, or the network itself.
We use Citrix or other virtual desktops. Why do we need Loxada?
Virtual desktops secure application access. They do not secure the network the session is established over, which is where interception and tampering happen.
We follow a SASE methodology. Why do we need Loxada?
Loxada complements a SASE architecture by securing the network environment at the edge, before traffic reaches your SASE stack.
We have a Zero Trust architecture. Why do we need Loxada?
Zero Trust verifies users and devices before granting access, and Loxada supports that rather than competing with it. It addresses the part Zero Trust assumes rather than checks: the condition of the network the device is connecting from.
We already use a VPN. Why do we need Loxada?
Your VPN protects traffic once the connection is established. It does not tell you anything about the network underneath: whether the router has been patched, who else is on it, or whether it has already been compromised. An attacker on the same local network can interact with a device before the secure session starts. Loxada secures that layer.
Will Loxada work alongside our existing VPN?
Yes. Loxada does not interfere with your VPN, and your staff can continue to use it to reach internal systems exactly as they do now. The two do different jobs: your VPN protects traffic in transit, Loxada secures the network it starts from.
When does Loxada Verify launch?
Loxada Verify launches in Q3 2026. If you would like to discuss it ahead of launch, get in touch.
Can Verify be used for IT helpdesk password resets?
Yes, this is one of the clearest applications. A helpdesk asked to reset credentials or add an MFA device for someone they cannot see is making a judgment call, often under time pressure and often for someone they have never spoken to before. Verify gives them something to check.
Does Verify stop AI deepfakes and voice cloning?
Not by detecting it. Verify does not analyze a voice or judge whether it is synthetic. Instead, it removes the need to make that call: if the person has to confirm presence on their authorized device, how convincing the caller sounds is no longer the deciding factor. As voice cloning makes these calls harder to challenge, a check that does not rest on the listener’s judgment becomes more valuable.
Does Verify identify the person, or the device?
The device, and in practice that gets you most of the way to the person. Verify confirms that someone is connected to the specific Loxada device assigned to them, not who they are in the abstract. But to pass the check while impersonating someone, an attacker would need that person’s live, authorized device and the knowledge to use it in context, everything else about the request they are making. A stolen device on its own would not be enough. The device check is a strong proxy for the person.
What problem does it solve?
Social engineering. Specifically, the call, video, or online meeting where someone asks a member of staff to authorize a payment, change bank details, release information, or reset access, by convincing them they are someone they are not.
These attacks work because they target a person’s judgment under pressure, not a technical control, which is why the rest of your security stack does not see them. The best-known versions are IT helpdesk fraud, senior-executive impersonation, where someone poses as a CXO to pressure a member of staff, and high-value authorization moments.
What is Loxada Verify?
Loxada Verify is a real-time check that the person on a sensitive call, video, or online meeting is genuinely connected to their authorized Loxada device. Each party shares a short code that is only available when that device is actively connected, so someone can’t pass the check unless they really are on it.
Does Loxada reduce the load on our IT team?
That is the intention. Devices are pre-configured, update themselves, cannot be reconfigured by users, and are managed from one place. The support calls that come from misconfigured home routers and inconsistent local setups largely stop being your problem.
Does Loxada support multiple sites and large teams?
Yes. Devices can be issued to individuals or whole teams across as many locations as you need, all managed centrally through the portal.
How do we remove someone's access when they leave?
Centrally, by deactivating their device subscription in the portal. You do not need the hardware back for the access to stop working.
How do we change our Wi-Fi network name or password?
Both are changed in the Loxada portal, under your organization’s network settings. Devices pick the change up automatically the next time they check in.
How do we add a new device to the network?
Connect it to the Loxada network and it is protected. There is nothing to install on the device itself.
How does someone set up a device for the first time?
They connect to the setup network, enter their company details and a one-time code, and the device configures itself. We have short setup videos covering the whole process, from unboxing to first connection, on our support page.
How do we get devices to our team?
Devices can be shipped to your offices or directly to individual team members. They arrive pre-configured and need very little from the user to get running.
What is Loxada Quantum Secure?
Loxada Quantum Secure applies hybrid post-quantum cryptography at the managed network layer, using NIST-standard algorithms, without requiring any changes to your applications.
What is harvest-now-decrypt-later, and why does it matter now?
It is the practice of capturing encrypted data today and storing it until the capability exists to decrypt it. The encryption protecting a transfer now is not necessarily the encryption that will be protecting it in ten years.
That matters for anything with a long confidentiality life: financial records, legal files, health data, intellectual property, government and defense material. If your data will still be sensitive in a decade, traffic you send today is a future exposure rather than a solved problem.
Do we have to change our applications?
No. That is the main reason to do this at the network layer. Post-quantum migration at the application level means re-engineering systems one at a time. Applying it at the managed network layer means the protection covers traffic from devices on a Loxada network without touching the applications themselves
Who is it for?
Organizations whose data stays sensitive for a long time, and organizations facing crypto-agility expectations from regulators. In practice that means financial services, legal, healthcare, defense and government supply chain, and anyone whose customers have started asking about post-quantum readiness in due diligence.
Which standards does it use?
The NIST post-quantum standards ML-KEM, ML-DSA and SLH-DSA, in a hybrid model that runs post-quantum algorithms alongside established ones rather than replacing them outright.
When does Loxada Quantum Secure launch?
Loxada Quantum Secure launches in Q3 2026. If you would like to discuss it ahead of launch, get in touch.
Can we restrict our systems so that only traffic from Loxada devices can reach them?
Yes. Your traffic egresses through Loxada’s connectivity layer from a known, static address, so you can configure your systems to accept connections only from it. By default that address is shared with a small number of other Loxada organizations; with a dedicated egress IP it is yours alone, which makes the allowlist exclusive to your traffic. Whether this fits a given system depends on how it is hosted and how its access controls are built, so it is worth a conversation with your team and ours.
What data does Loxada hold about our organization?
Deployment-level information: which devices are assigned to whom, their connected state, their firmware version, and the volume of data passing through each device for reporting purposes. We do not hold records of individual users’ browsing activity.
Where is Loxada's infrastructure located?
We currently have presence in the US and the UK. Loxada’s architecture is regional by design, so the connectivity layer can be deployed wherever suitable infrastructure exists. If you have a specific requirement about where your traffic egresses or where data is processed, talk to us and we will tell you what we can support today.
Does traffic route directly into our corporate network?
No. Loxada routes traffic from the device to its secure connectivity layer and out to the public internet, not inward to your network. When your people need to reach internal systems, they do that through your existing remote access, which works alongside Loxada as normal. If your goal is to let your own systems trust Loxada traffic, a dedicated egress IP and an allowlist on your side is usually the cleaner route, and does not require Loxada to route into your network at all.
Where does our traffic go
From the device, over an encrypted connection to Loxada’s secure connectivity layer, and out to the public internet from there.
Does Loxada block malicious websites?
Yes. Loxada maintains an aggregated blocklist of known-bad domains, drawn from multiple open-source lists, currently over 900,000 domains. A request to a domain on the list is dropped before it resolves. This is preventive filtering against a known list, not threat detection.
What happens if someone factory resets their device?
It returns to its secure Loxada configuration rather than to an open manufacturer default. A reset does not strip the protection off the device or leave it in an insecure state.
Can Loxada staff log into my devices remotely?
No, and neither can anyone else. There is no remote administration path into a deployed Loxada secure router.
How often is Loxada's firmware updated?
On three triggers. When the underlying platform our firmware is built on issues a security release, we build and ship a matching update. Most router manufacturers do not. We also update when we are adding new functionality, and for routine maintenance and minor code changes. Every update is securely delivered and applied automatically, with no action needed from the user.
Who develops Loxada's firmware?
Loxada’s secure firmware is developed and maintained by our own engineering team, with engineers based in the UK and the United States. Where regulation or a customer’s requirements call for it, we can develop and maintain firmware through a locally-based branch. If you have a specific requirement about development location, talk to us and we will set out what we can support.
How do I know Loxada's firmware doesn't contain backdoors?
The firmware is tested by our own engineering team and through independent external security testing, carried out on a regular cycle and ahead of any major functional release. We can share the reports with customers or prospects who need them for a security review or procurement process. Updates are securely delivered, so the tested firmware is the only firmware that reaches your devices.
When I work on a shared network, can other devices on it reach mine?
No. Your Loxada secure router sits between your work device and the local network it connects to, and it stays effectively invisible on that network: it does not respond to connection requests and keeps non-essential ports closed. Other devices sharing that connection, in a shared office, hotel, a home, or a public space, etc. have no route to your work device.
What makes Loxada secure routers secure?
Loxada secure routers run Loxada’s own secure firmware, purpose-built for security and kept that way through automatic, securely delivered updates. Off-the-shelf routers depend on the manufacturer’s code, update schedule, and disclosure behavior, which often leave known vulnerabilities unpatched. Loxada maintains its firmware centrally, so the security of the connection does not rest on a hardware vendor’s practices.
What is Loxada?
Loxada is a managed secure router system. We supply pre-configured secure routers that create a controlled work network wherever your people are, and route their traffic through Loxada’s secure connectivity layer, an encrypted connection from the device out to the internet. It gives you a known, controlled network in places you do not manage: homes, hotels, coworking spaces, client sites.
Is Loxada a VPN?
No. Traffic from devices on a Loxada network is carried over an encrypted connection, so encryption is part of how the system works, but the proposition is different.
A VPN protects traffic in transit from a device. Loxada secures the network environment that device is sitting on, which a VPN was never designed to do. If the local router has been compromised, a VPN still does its job and the underlying problem remains.
What is the uncontrolled network edge?
It is the point where your staff connect to company systems from networks your organization cannot verify or control. Home broadband, hotel Wi-Fi, a serviced office’s shared connection, a client’s guest network.
You can secure the device and you can secure the application. The network in between is usually somebody else’s, running equipment nobody has checked.
What is network separation, and why does it matter?
Network separation divides a network into isolated segments so that a problem in one does not reach the others. In practice it means the laptop your finance manager uses cannot be reached by the smart TV, the games console, or a housemate’s laptop on the same broadband line.
Without it, every device sharing a network is a potential route to every other device on it.
What are the benefits of network separation?
It reduces the chance of a compromise spreading, keeps sensitive devices away from unknown ones, and gives you a control you can describe and evidence rather than an assumption you are relying on.
Why are off-the-shelf routers often insecure?
Off-the-shelf routers, meaning the consumer-grade or small-office equipment found in homes and shared spaces, are built for ease of use rather than for security. Common problems include weak default credentials, firmware that is out of date and rarely updated, unnecessary services left running, and no separation between devices on the network. Many are past the point where the manufacturer supports them at all.
Do we need Loxada if people only work from home occasionally?
Occasional access still carries risk, and it tends to be the least supervised. Someone logging in for an hour on a Sunday is doing so from exactly the environment that has no protection around it. Loxada applies the same control regardless of how often it is used.
Does Loxada need IT expertise to run?
No. Devices ship pre-configured with Loxada’s secure firmware and user set-up only requires a user to enter a confirmed email address and a one-time security code. Management is through the Loxada portal, and once a device is deployed there is nothing for the user or IT teams to do to keep Loxada devices patched and up to date as this is all handled automatically.