>WireGuard is very hard to run without logging. It simply wasn’t designed for that and the maintainer was paid once to write “a rootkit-like” piece of code for a VPN provider which hired him to help them fix that.

This is a really bizarre misunderstanding of the events.

Wireguard does not generate any log entries by default.

zx2c4 wrote a rootkit which makes it more difficult to retrieve connected users IPs from a running wireguard instance.

