Sugestion: add a feature to deny all connections unless connected to a VPN
There should be a feature that blocks all connections (aside from connecting to a vpn), unless they are routed through a VPN, regardless of if the VPN is functional or not.
A similar idea is described here: https://askubuntu.com/questions/229041/connect-only-via-vpn but it seems unreasonable for users to manually configure firewall settings or write custom shell scripts to gain a basic failsafe.
The use case for a feature like this would be: you are on untrusted network (like a cafe in a city), and would rather fail traffic than be intercepted.