Better instructions here, obvs: https://dnscrypt.org/
But roll with the thick client because it's convenient and you'll get to see what you're in for... which is pretty boring if you're not running
nslookup all the time to see where your DNS entries are coming from. But then again, it's pretty boring. But at least they're encrypted?